Access control in document-centric workflow systems - An agent-based approach

被引:17
作者
Botha, RA [1 ]
Eloff, JHP
机构
[1] Port Elizabeth Technikon, Fac Comp Studies, Port Elizabeth, South Africa
[2] Rand Afrikaans Univ, Dept Comp Sci, Johannesburg, South Africa
关键词
Access control - Context sensitive access control - Document-centric workflow systems;
D O I
10.1016/S0167-4048(01)00613-7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Workflow Systems are increasingly being used to streamline organizations' business processes. During the execution of business processes, information often traverses organizations' networks as documents. With the proliferation of the Internet, documents travel across open networks. These documents can, however, contain potentially sensitive information. The documents used in Workflow Systems must therefore be protected from unauthorized access. This paper enumerates three access control requirements of workflow environments, including the well-known principle of separation of duty. Thereafter the CSAC (Context-sensitive Access Control) model is presented to address the requirements. In conclusion it is demonstrated how this model can be implemented in an agent-based architecture.
引用
收藏
页码:525 / 532
页数:8
相关论文
共 6 条
[1]  
[Anonymous], 1997, P 2 ACM WORKSH ROL B
[2]  
ATLURI V, 1996, P 5 EUR S RES COMP S, P44, DOI DOI 10.1007/3-540-61770-1
[3]  
Bertino E., 1999, ACM Trans. Inf. Syst. Secur., V2, P65, DOI 10.1145/300830.300837
[4]  
*ISO, 1989, 74982 ISO 2
[5]  
Long D. L., 1999, Proceedings 15th Annual Computer Security Applications Conference (ACSAC'99), P129, DOI 10.1109/CSAC.1999.816020
[6]  
*WORKFL MAN COAL, WFMCTC1019