...
首页> 外文期刊>International Journal of Internet Technology and Secured Transactions >Enforcing access control in workflow systems with a task engineering approach
【24h】

Enforcing access control in workflow systems with a task engineering approach

机译:使用任务工程方法在工作流系统中实施访问控制

获取原文
获取原文并翻译 | 示例
           

摘要

The need for 'role engineering' becomes evident once a decision has been made to adopt role-based access control (RBAC) to ensure access control in a computer system. Role engineering is a process to define roles, permissions, and role hierarchies. Therefore, it is a critical step in deploying any RBAC-oriented system. The question is even more crucial for workflow management systems: additionally to role engineering, a 'task engineering' process could be needed to allow the satisfaction of access control constraints even in critical situations. In this paper, we propose an approach of task engineering to improve access control enforcement in workflow management systems. By task engineering, we mean the process to examine the granularity of each workflow's task in a way to meet - at run time - the main access control requirements, precisely the least privilege and separation of duties principles. This approach uses the constraints satisfaction problem (CSP) formulation and resolution method.
机译:一旦决定采用基于角色的访问控制(RBAC)以确保计算机系统中的访问控制,就需要“角色工程”。角色工程是定义角色,权限和角色层次结构的过程。因此,这是部署任何面向RBAC的系统的关键步骤。这个问题对于工作流管理系统而言甚至更为关键:除了角色工程设计之外,还可能需要一个“任务工程设计”过程,以便即使在紧急情况下也能满足访问控制约束。在本文中,我们提出了一种任务工程方法,以改进工作流管理系统中的访问控制实施。通过任务工程,我们指的是一种检查每个工作流任务的粒度的过程,该过程应满足(在运行时)主要的访问控制要求,精确的最低特权和职责分离原则。此方法使用约束满足问题(CSP)的制定和解决方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号