Complex Event Processing and Role-Based Access Control Implementation in ESN Middleware

  • Yassir Rouchdi
  • Khalid El Yassini
  • Kenza Oufaska
Conference paper
Part of the Lecture Notes in Networks and Systems book series (LNNS, volume 37)


This paper presents Radio frequency identification components, functioning and Middleware’s role. It discusses ESN middleware architecture and explains its security and privacy issues, including a discussion about resolving these problems by applying Role based access Control model as an authentication tool regulating back-end application’s access to data. Moreover, it presents the proposed architecture of our three layers middleware ‘UIR-’, Explaining how Complex event processing can handle RIFD and WSN data, shows RBAC rules application and gives details on the implementation process.


ESN middleware RFID WSN CEP RBA 


  1. 1.
    Ajana, M., Boulmalf, M., Harroud, H., Hamam, H.: A policy based event management middleware for implementing RFID applications. In: IEEE International Conference on Wireless and Mobile Computing, Networking and Communications (2009)Google Scholar
  2. 2.
    United States Government Accountability Office: INFORMATON SECURITY Radio Frequency Identification Technology in the Federal Government. United States Government Accountability Office, May 2005.
  3. 3.
    Sheng, Q., Li, X., Zeadally, S.: Enabling next-generation RFID applications: solutions and challenges. Computer 41(9) (2008)Google Scholar
  4. 4.
    Al-Mousawi, H.: Performance and reliability of Radio Frequency Identification (RFID)”, in Agder University College, June 2004.
  5. 5.
    Kefalakis, N., Leontiadis, N., Soldatos, J., Donsez, D.: Middleware building blocks for architecting RFID systems. Mob. Lightweight Wirel. Syst. 13, 325–336 (2009)CrossRefGoogle Scholar
  6. 6.
    Su, X., Chu, C.-C., Prabhu, B.S., Gadh, R.: On the creation of automatic identification and data capture infrastructure via RFID and other technologies. In: Yan, L., Zhang, Y., Yang, L.T., Ning, H. (eds.) The Internet of Things: From RFID to the Next-Generation Pervasive Networked Systems, p. 24. Auerbach Publications, Taylor & Francis Group (2007)Google Scholar
  7. 7.
    Bornhövd, M.C., Lin, T., Haller, S., Schaper, J.: Integrating automatic data acquisition with business processes - experiences with SAP’s auto-ID infrastructure. In: Proceedings of the 30th International Conference on Very Large Data Bases (VLDB), Toronto (2004)Google Scholar
  8. 8.
    Bell, S.: RFID Technology and Applications, pp. 6–8. Cambridge University Press, London (2011)Google Scholar
  9. 9.
    Catherine O’Connor, M.: RFID is the key to car clubs success. RFID J. (2011)Google Scholar
  10. 10.
    Russell, R.: Manufacturing execution systems: moving to the next level. Pharm. Technol. 28, 38–50 (2004)Google Scholar
  11. 11.
    Darwish, M.: Analysis of ANSI RBAC support in commercial middleware. Ph.D. thesis, University of British Columbia, Vancouver, Canada, April 2009Google Scholar
  12. 12.
    Sandhu, R., Ferraiolo, D.F., Kuhn, D.R.: The NIST model for role-based access control: toward a unified standard. In: 5th ACM Workshop Role-Based Access Control, pp. 47–63, July 2000Google Scholar
  13. 13.
    Ferraiolo, D.F., Kuhn, D.R., Sandhu, R.: RBAC standard rationale: comments on a critique of the ANSI standard on role-based access control. IEEE Secur. Priv. 5(6), 51–53 (2007)CrossRefGoogle Scholar
  14. 14.
    Thiell, M., Zuluaga, J., Montanez, J., van Hoof, B.: Green logistics – global practices and their implementation in emerging markets, p. 2, Colombia (2011)Google Scholar
  15. 15.
    Sandhu, R., Coynek, E.J., Feinsteink, H.L., Youman, C.E.: Role-based access control models. IEEE Comput. 29(2), 38–47 (1996)Google Scholar
  16. 16.
    Sandhu, R.: Role-Based Access Control (RBAC). CS 6393 Lecture 3, 29 January 2016Google Scholar
  17. 17.
    Zhang, T., Ouyang, Y., He, Y.: Traceable air baggage handling system based on RFID tags in the airport. J. Theoret. Appl. Electron. Commer. Res. 3(1), 106–115 (2008). School of Computer Science and Engineering, Beijing University of Aeronautics and Astronautics, ChinaGoogle Scholar
  18. 18.
    Weil, R., Coyne, E.: ABAC and RBAC: scalable, flexible, and auditable access management. IT Prof. 15, 14–16 (2013)CrossRefGoogle Scholar
  19. 19.
    Jin, C., Shen, A., Yu, W.: The RBAC system based on role risk and user trust. Int. J. Comput. Commun. Eng. 5, 374 (2016)CrossRefGoogle Scholar

Copyright information

© Springer International Publishing AG 2018

Authors and Affiliations

  • Yassir Rouchdi
    • 1
  • Khalid El Yassini
    • 1
  • Kenza Oufaska
    • 2
  1. 1.IA Laboratory, Faculty of Sciences Meknes, Moulay Ismail UniversityMeknesMorocco
  2. 2.TICLab, International University of RabatRabatMorocco

Personalised recommendations