• DocumentCode
    462224
  • Title

    Concurrency Control using Subject- and Purpose-Oriented (SPO) View

  • Author

    Enokido, Tomoya ; Takizawa, Makoto

  • Author_Institution
    Rissho Univ., Tokyo
  • fYear
    2007
  • fDate
    10-13 April 2007
  • Firstpage
    454
  • Lastpage
    464
  • Abstract
    In information systems, multiple transactions issued by subjects manipulate objects in a conflicting way. Conflicting access requests from multiple transactions have to be serialized. There are various ways to order multiple access requests like FIFO and timestamp ordering (TO) schemes. In scheduling ways in operating systems and others, highly prioritized processes are performed before lower ones. In this paper, we postulate that an access request from a more significant subject should be performed prior to another access request from a less significant subject. We define the significance of subjects in terms of roles assigned to subjects and authorization of roles. In the role-based access control model, a role is a set of access rights. Only a subject granted a role can issue an access request in the role. Here, there are two views, subject-oriented (SO) and purpose-oriented (PO) to order transactions. A method issued by a more significant subject should be performed before another conflicting method issued by a less significant subject in the SO view. A transaction issued by a subject is associated with a purpose, i.e. a subset of roles granted to the subject. A method with a more significant purpose should be performed before another method with a less significant purpose in the PO view. In this paper, we discuss how conflicting methods are ordered in a unique SO and PO (SPO) view
  • Keywords
    authorisation; concurrency control; information systems; scheduling; transaction processing; FIFO; access requests; access rights; authorization; concurrency control; information systems; purpose-oriented view; role-based access control; scheduling; subject-oriented view; timestamp ordering; Access control; Access protocols; Authorization; Concurrency control; Databases; Information systems; Management information systems; Operating systems; Permission; Privacy;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security, 2007. ARES 2007. The Second International Conference on
  • Conference_Location
    Vienna
  • Print_ISBN
    0-7695-2775-2
  • Type

    conf

  • DOI
    10.1109/ARES.2007.60
  • Filename
    4159836