An Improved Task and Role-Based Access Control Model with Multi-Constraint

Article Preview

Abstract:

A combination of Task and Role-based Access Control with multi-constraint is put forward in this paper. It is designed to solve problem of access control management about collaborators in workflow system, whose difficulties lie in complex authorization and low users efficiency. It combines the tasks and roles, classifies tasks, simplifies permissions management, defines the mutually exclusive roles and binding tasks and formulates dynamic users allocation policies by establishing a users execution history table to improving the efficiency. Finally, a specific dynamic access control design is given for electric power enterprise equipment maintenance management workflow, the given example shows that the model and algorithm satisfies the principle of least permission and separation of duties and ensures the workflow system to execute tasks safely and efficiently.

You might also be interested in these eBooks

Info:

Periodical:

Pages:

2532-2535

Citation:

Online since:

January 2015

Export:

Price:

Permissions CCC:

Permissions PLS:

Сopyright:

© 2015 Trans Tech Publications Ltd. All Rights Reserved

Share:

Citation:

* - Corresponding Author

[4] Xu Hong, Tai Weipeng. Research on Workflow-Oriented RBAC model [J]. Computer Engineering and Design, 2012 33 (4) 1295-1299.

Google Scholar

[5] Lu Y, Zhang L, Sun J. Types for task-based access control in workflow systems [J] Software, IET, 2008, 2 (5). 461-473.

DOI: 10.1049/iet-sen:20070098

Google Scholar

[6] Mallare IJG, Pancho-Festin S. Combining Task-and Role-Based Access Control with Multi-Constraints for a Medical Workflow System [C]/IT Convergence and Security (ICITCS), 2013 International Conference on. IEEE, 2013 1-4.

DOI: 10.1109/icitcs.2013.6717814

Google Scholar

[7] GAO Dongqun, Huang Qin, Liu Yiliang. Role-Hierarchy-based Task Delegation Model in Workflow [J]. Computer Engineering and Design, 2011 32 (6) 1926 -(1929).

Google Scholar

[8] Li Shuang. Extended Role-Based Access Control [J]. Computer Engineering and Applications, 2012 48(19) 54-60.

Google Scholar

[9] Zhang Haijuan, Fu Zhengfang, Zhang Honglin. User assigned Policy of Security Workflow [J]. Application Research of Computers, 2008 25 (1) 238-240.

Google Scholar