科技报告详细信息
Managing Workflow Authorization Constraints through Active Technology
Casati, Fabio ; Castano, Silvana ; Fugini, MariaGrazia
HP Development Company
关键词: workflows;    authorization constraints;    active rules;   
RP-ID  :  HPL-2000-156
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

The execution of workflow processes requires authorization models and tools for enforcing the assignment of tasks to (human or automated) agents according to the security policy of the organization. The paper presents an an advanced role-based authorization model for workflow processes, extended with organizational levels and authorization constraints. Roles and organizational levels are organized into hierarchies, to facilitate the assignment of tasks to agents. In addition, constraints are introduced to specify instance- dependent, time-dependent, and history-dependent authorizations. Authorization constraints are specified in terms of active rules to be executed on top of the authorization base, where play and execute authorizations as well as role and level hierarchies are properly stored. Besides enforcing authorization constraints, active rules are used also for authorization management , to enforce authorization derivation along role/level hierarchies. The WfMS then determines authorized agents on the basis of the contents of the authorization base, suitably maintained by the active rules defined in the system. In order to better illustrate the model and concepts included in the paper and to demonstrate the feasibility of the approach, we also present the implementation of the proposed model within the WIDE workflow management system. 39 Pages

【 预 览 】
附件列表
Files Size Format View
RO201804100002143LZ 382KB PDF download
  文献评价指标  
  下载次数:12次 浏览次数:48次