Component/s: First public review
Submitted on Thursday, July 16, 2015 - 14:46
Submitted by user:
Submitted values are:
Submitter's Name: Hal Lockhart
TC Name: XACML TC
TC Email Address: email@example.com
Work Product Title: XACML v3.0 Related and Nested Entities Profile Version
Committee Specification Draft ##: CSD 01
CSD URI: TBD
Additional Resources :
The eXtensible Access Control Markup Language (XACML) [XACML3] defines
categories of attributes that describe entities of relevance to access
decisions. XACML rules, policies and policy sets contain assertions over the
attributes of these entities that must be evaluated to arrive at an access
decision. Principal among the various predefined entities are the entity that
requesting access, i.e., the access subject, and the entity being accessed,
i.e., the resource. However, it is not unusual for access decisions to be
dependent on attributes of entities that are associated with the access
or resource. For example, attributes of an organization that employs the
This profile defines two ways of representing these associated entities in
request context - related entities and nested entities - and defines
mechanisms to access and traverse these entities.
TC Description: The XACML TC specifies access control standards, based on the
Attribute-based Access Control model (ABAC). The core of this work is the
specification of the syntax and semantics of a policy language called XACML.
Current work in the TC consists mostly of defining additional profiles of
various types which build on version 3.0 of the XACML core specification.
Notes: Request for CSD was submitted just prior to this request.
The results of this submission may be viewed at: