Title :
A flexible access control model for workflows
Author :
Qiu, Jiong ; Ma, Chen-hua
Author_Institution :
Coll. of Comput., Hangzhou Dianzi Univ., Hangzhou
Abstract :
Access control models proposed so far can not satisfy the complicated access requirements in workflow systems very well. To address the issue, a flexible access control model for workflows is proposed in this paper, in which tasks and dependencies between tasks in workflows are classified and defined from the access control´s point of view, and for different types of tasks, different authorization strategies will be applied. Concepts of task amount and task authorization threshold are proposed for collaborative tasks. By the introduction of authorization policies, the flexible definition of task-related authorization is realized and the permission-relationship between senior and junior roles for a role hierarchy can be controlled flexibly. Furthermore, authorization-policy-related constraints are defined for the description of complicated security requirements associated with tasks. Effective static and dynamic conflict detection and resolution rules for constraints are also provided.
Keywords :
authorisation; groupware; task analysis; collaborative tasks; flexible access control model; security requirements; task amount; task authorization; workflow systems; Access control; Authorization; Collaboration; Collaborative work; Educational institutions; Engineering drawings; Engineering management; Information security; Laboratories; Permission; Authorization Policy; Conflict Detection and Resolution for Constraints; Task; Workflow;
Conference_Titel :
Computer Supported Cooperative Work in Design, 2008. CSCWD 2008. 12th International Conference on
Conference_Location :
Xi´an
Print_ISBN :
978-1-4244-1650-9
Electronic_ISBN :
978-1-4244-1651-6
DOI :
10.1109/CSCWD.2008.4537047