TY - CHAP UR - http://eprints.imtlucca.it/1574/ Y1 - 2012/// KW - Security KW - Model-driven development KW - Web engineering AV - public TI - Towards Model-Driven Development of Access Control Policies for Web Applications N2 - We introduce a UML-based notation for graphically modeling systems? security aspects in a simple and intuitive way and a model-driven process that transforms graphical specifications of access control policies in XACML. These XACML policies are then translated in FACPL, a policy language with a formal semantics, and the resulting policies are evaluated by means of a Java-based software tool. PB - Springer A1 - Bush, Marianne A1 - Koch, Nora A1 - Masi, Massimiliano A1 - Pugliese, Rosario A1 - Tiezzi, Francesco T2 - Proceedings of 1st International Workshop on Model-Driven Security (MDsec) ID - eprints1574 ER -