节点文献

基于角色的工作流系统访问控制模型

Role-Based Access Control Model for Workflow Systems

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 马亮顾明

【Author】 MA Liang, GU Ming (Software School, Tsinghua University, Beijing 100084, China)

【机构】 清华大学软件学院清华大学软件学院 北京100084北京100084

【摘要】 5工作流技术在办公自动化、电子商务、电子政务等领域得到广泛关注,工作流系统的安全问题变得日益突出.访问控制是工作流系统安全机制的重要环节.本文在NIST推荐的标准RBAC模型的基础上,结合实际情况,提出一种基于角色的工作流系统访问控制模型WRBAC.该模型描述了用户、角色、许可、活动等要素之间的关系,给出了静态和动态授权约束规则,能有效防止重要信息的泄漏和商业欺诈,满足工作流系统对访问控制的需求.

【Abstract】 Nowadays workflow is coming into more and more notice in many areas such as OA, e-government, e-business. Security is a important problem in workflow environment. Access control is a vital component of Security. In this paper, a RBAC model in workflow environment (WRBAC) is introduced. The model is based on proposed NIST standard for RBAC, formally describes the relationship between the key elements of access control in workflow systems such as user, role, permission and activity, presents the static and dynamic constraints. The model can effectively reduce the risk of information leakage and fraud, meet the requirements for access control in workflow systems.

【关键词】 工作流安全访问控制角色
【Key words】 workflowsecurityaccess controlrole
【基金】 国家“八六三”基金项目(2003AA414030)资助.
  • 【文献出处】 小型微型计算机系统 ,Journal of Chinese Computer Systems , 编辑部邮箱 ,2006年01期
  • 【分类号】TP393.08
  • 【被引频次】64
  • 【下载频次】612
节点文献中: 

本文链接的文献网络图示:

本文的引文网络