Title :
Domain Administration of Task-role Based Access Control for Process Collaboration Environments
Author :
Lu, Yahui ; Zhang, Li
Author_Institution :
Coll. of Software, Shenzhen Univ., Shenzhen, China
Abstract :
The fast evolving workflow technologies facilitate organizations to interact and cooperate with each other to achieve their business goals by process collaborations. Task-role based access control is an important security mechanism to protect data and resources in information systems. However, the traditional centralized authorization and administration mechanism in access control can not satisfy the administrative requirements in process collaboration environments. In this paper, we propose a domain based administration model for task-role based access control (DATRBAC), in which the authorization and administration permissions are distributed to multiple administrative domains and administrative roles. Then we propose the solution to detect and resolve the conflicts between access control policies defined by different administrative roles. We also described the implementation of the model in the PLM product and the experiments based on the practical application data.
Keywords :
authorisation; business process re-engineering; information systems; business processes; centralized authorization; data protection; domain based administration model; information systems; process collaboration environment; security mechanism; task-role based access control; workflow technologies; Access control; Authorization; Collaborative software; Collaborative work; Data security; Information security; Information systems; International collaboration; Permission; Protection; Access Control; Administrative Domain; Administrative Role; Process Collaboration; Workflow;
Conference_Titel :
Information Assurance and Security, 2009. IAS '09. Fifth International Conference on
Conference_Location :
Xian
Print_ISBN :
978-0-7695-3744-3
DOI :
10.1109/IAS.2009.88