作者
Elisa Bertino, Elena Ferrari, Vijay Atluri
发表日期
1999/2/1
期刊
ACM Transactions on Information and System Security (TISSEC)
卷号
2
期号
1
页码范围
65-104
出版商
ACM
简介
In recent years, workflow management systems (WFMSs) have gained popularity in both research and commercial sectors. WFMSs are used to coordinate and streamline business processes. Very large WFMSs are often used in organizations with users in the range of several thousands and process instances in the range of tens and thousands. To simplify the complexity of security administration, it is common practice in many businesses to allocate a role for each activity in the process and then assign one or more users to each role—granting an authorization to roles rather than to users. Typically, security policies are expressed as constraints (or rules) on users and roles; separation of duties is a well-known constraint. Unfortunately, current role-based access control models are not adequate to model such constraints. To address this issue we (1) present a language to express both static and dynamic …
引用总数
1999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202411123030355459375879545257413327273119181266581
学术搜索中的文章
E Bertino, E Ferrari, V Atluri - ACM Transactions on Information and System Security …, 1999