Title :
Concurrency Control using Subject- and Purpose-Oriented (SPO) View
Author :
Enokido, Tomoya ; Takizawa, Makoto
Author_Institution :
Rissho Univ., Tokyo
Abstract :
In information systems, multiple transactions issued by subjects manipulate objects in a conflicting way. Conflicting access requests from multiple transactions have to be serialized. There are various ways to order multiple access requests like FIFO and timestamp ordering (TO) schemes. In scheduling ways in operating systems and others, highly prioritized processes are performed before lower ones. In this paper, we postulate that an access request from a more significant subject should be performed prior to another access request from a less significant subject. We define the significance of subjects in terms of roles assigned to subjects and authorization of roles. In the role-based access control model, a role is a set of access rights. Only a subject granted a role can issue an access request in the role. Here, there are two views, subject-oriented (SO) and purpose-oriented (PO) to order transactions. A method issued by a more significant subject should be performed before another conflicting method issued by a less significant subject in the SO view. A transaction issued by a subject is associated with a purpose, i.e. a subset of roles granted to the subject. A method with a more significant purpose should be performed before another method with a less significant purpose in the PO view. In this paper, we discuss how conflicting methods are ordered in a unique SO and PO (SPO) view
Keywords :
authorisation; concurrency control; information systems; scheduling; transaction processing; FIFO; access requests; access rights; authorization; concurrency control; information systems; purpose-oriented view; role-based access control; scheduling; subject-oriented view; timestamp ordering; Access control; Access protocols; Authorization; Concurrency control; Databases; Information systems; Management information systems; Operating systems; Permission; Privacy;
Conference_Titel :
Availability, Reliability and Security, 2007. ARES 2007. The Second International Conference on
Conference_Location :
Vienna
Print_ISBN :
0-7695-2775-2
DOI :
10.1109/ARES.2007.60