DocumentCode
462224
Title
Concurrency Control using Subject- and Purpose-Oriented (SPO) View
Author
Enokido, Tomoya ; Takizawa, Makoto
Author_Institution
Rissho Univ., Tokyo
fYear
2007
fDate
10-13 April 2007
Firstpage
454
Lastpage
464
Abstract
In information systems, multiple transactions issued by subjects manipulate objects in a conflicting way. Conflicting access requests from multiple transactions have to be serialized. There are various ways to order multiple access requests like FIFO and timestamp ordering (TO) schemes. In scheduling ways in operating systems and others, highly prioritized processes are performed before lower ones. In this paper, we postulate that an access request from a more significant subject should be performed prior to another access request from a less significant subject. We define the significance of subjects in terms of roles assigned to subjects and authorization of roles. In the role-based access control model, a role is a set of access rights. Only a subject granted a role can issue an access request in the role. Here, there are two views, subject-oriented (SO) and purpose-oriented (PO) to order transactions. A method issued by a more significant subject should be performed before another conflicting method issued by a less significant subject in the SO view. A transaction issued by a subject is associated with a purpose, i.e. a subset of roles granted to the subject. A method with a more significant purpose should be performed before another method with a less significant purpose in the PO view. In this paper, we discuss how conflicting methods are ordered in a unique SO and PO (SPO) view
Keywords
authorisation; concurrency control; information systems; scheduling; transaction processing; FIFO; access requests; access rights; authorization; concurrency control; information systems; purpose-oriented view; role-based access control; scheduling; subject-oriented view; timestamp ordering; Access control; Access protocols; Authorization; Concurrency control; Databases; Information systems; Management information systems; Operating systems; Permission; Privacy;
fLanguage
English
Publisher
ieee
Conference_Titel
Availability, Reliability and Security, 2007. ARES 2007. The Second International Conference on
Conference_Location
Vienna
Print_ISBN
0-7695-2775-2
Type
conf
DOI
10.1109/ARES.2007.60
Filename
4159836
Link To Document