A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2020; you can also visit the original URL.
The file type is
PEP4Django A Policy Enforcement Point for Python Web Applications
Anais do IX Workshop de Gestão de Identidades Digitais (WGID 2019)
Traditionally, access control mechanisms have been hard-coded into application components. Such approach is error-prone, mixing business logic with access control concerns, and affecting the flexibility of security policies, as is the case with IFRN SUAP Django-based system. The externalization of access control rules allows their decoupling from business logic, through the use of authorization servers where access control policies are stored and queried for computing access decisions. In thisdoi:10.5753/wgid.2019.14021 fatcat:kgrro4q5qjggvjstuyuc43ihxu