【24h】

An authorization model for workflows

机译:工作流的授权模型

获取原文

摘要

Workflows represent processes in manufacturing and office environments that typically consist of several well-defined activities (known as tasks). To ensure that these tasks are executed by authorized users or processes (subjects), proper authorizationmechanisms must be in place. Moreover, to make sure that authorized subjects gain access on the required objects only during the execution of the specific task, granting and revoking of privileges need to be synchronized with the progression of the workflow. A predefined specification of the privileges often allows access for more than the time required, thus, though a subject completes the task or have not yet begun the task, it may still prossess privileges to access the objects, resulting in compromising security. In this paper, we propose a Workflow Authorization Model (WAM) that is capable of specifying authorizations in such a way that subjects gain access to requierd objects only during the execution of the task, thus synchronizing the authorization flow with the workflow. To achieve this synchronization, we associate an Authorization Template (AT) with each task, which allows appropriate authorizations to be granted only when the task starts and to revoke them when the task finishes. In this paperm we also present a model of implementation based on Petri nets and show how this synchronization can be implemented. Because the theoretical aspects of Petri nets have been extensively studied and due to their strong mathematical foundation, a Petri net representation of an authorization model serves as a good tool for conducting safety analysis since the safety problem in the authorization model is equivalent to the reachability problem in Petri nets.
机译:工作流代表制造和办公环境中的流程,通常由几种明确的活动(称为任务)组成。为了确保通过授权用户或进程(科目)执行这些任务,必须到位正确的授权机制。此外,要确保在执行特定任务期间,仅在执行特定任务期间只能在所需对象上访问所需对象的访问,授予和撤销权限需要与工作流程的进展同步。预定义的特权规范通常允许访问超过所需的时间,但是,虽然主题完成任务或尚未开始任务,但它仍可能介绍访问对象的权限,从而导致安全性损害。在本文中,我们提出了一种工作流授权模型(WAM),其能够以这样的方式指定授权,该方法仅在执行任务期间仅增益访问Repierd对象,从而同步与工作流程的授权流程。为实现此同步,我们将授权模板(at)与每个任务相关联,该任务允许仅在任务开始时授予适当的授权,并在任务完成时撤消它们。在这种基础面前,我们还介绍了一种基于Petri网的实现模型,并显示如何实现该同步。由于Petri网的理论方面已被广泛研究并由于其强大的数学基础,因此授权模型的Petri网表示作为进行安全分析的良好工具,因为授权模型中的安全问题相当于可达性问题在Petri网。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号