Axiomatics Policy Auditor

The Axiomatics Policy Auditor (APA) simplifies the analysis and validation process of XACML policies. It is designed for use by managers, controllers and auditors, and features a user-friendly web-based graphical interface with minimal use of technical jargon.

Users analyze policies and their effects by writing and submitting a wide range of queries to the Policy Auditor. The type of queries currently supported by the APA include, among others:

  • Who can access a specific resource?
  • Under what conditions can the user access the resource?
  • What information can they access?
  • Under what conditions can the information be accessed by a specific user?
  • What can a specific user do to a certain resource?

 

apa web

Among other things users can query whether suppliers can read inventory data in the organization's portal.

The APA process

1)  User writes question to analyze an XACML policy, in the APS policy store (PRP).
2) Once the user submits the query, the APA screens through the selected XACML policies in the policy store and makes use of any necessary additional information to analyze the query.
3) The query result is shown in the APA in the form of XACML attributes that users can easily interpret.

Benefits of Axiomatics Policy Auditor

  • Ensure compliance with regulatory mandates
  • Assist auditors in understanding high-level consequences of policies
  • Increase confidence in policy controls and accountability

    Features of Axiomatics Policy Auditor

    • Supports XACML
    • Full integration with Axiomatics Policy Server
    • Web-based application with user-friendly interface
    • Compatibility with most browsers
    • Iterative analysis
    • Ability to save and store queries for future uses

     

    To learn more about this product, download the APA Data Sheet from the Resources section.

    Search


    Read more

    Fine-grained authorization
    XACML policies use attributes of the subject, the action, the resource and the context in which access is requested to deliver fine-grained access controls.

    Policy Enforcement Points
    Axiomatics offers XACML Policy Enforcement Points (PEP) for a broad variety of environments.

    Attribute Based Access Control (ABAC)
    Attribute-Based Access Control (ABAC) uses attributes as building blocks in a structured language that defines access control rules and describes access requests.

    XACML policy life-cycle management
    The Axiomatics eXtensible authorization solutions implement XACML 2.0 and XACML 3.0.

    100% pure XACML
    Products from Axiomatics implement XACML 2.0 and 3.0. This article describes the details of the OASIS standard.

    Analysis and further reading

    To get more in-depth information on fine-grained, context aware access control, visit our resource centre. Once you have registered and logged on you can  access all our whitepapers.

    Become a registered user

    Contact Axiomatics

    Would you like to learn more about Axiomatics solutions? Would you like to see a demo? Do you want to speak to an Axiomatics representative about your authorization requirements?

    Contact Axiomatics