Conformance Checking of RBAC Policies in Process-Aware Information Systems

被引:0
|
作者
Baumgrass, Anne [1 ]
Baier, Thomas [2 ]
Mendling, Jan [2 ]
Strembeck, Mark [1 ]
机构
[1] Vienna Univ Econ & Business WU Vienna, Inst Informat Syst & New Media, Vienna, Austria
[2] Humboldt Univ, Inst Informat Syst, Berlin, Germany
关键词
Process-Aware Information Systems; Conformance Checking; LTL; Security; Role-Based Access Control;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A process-aware information system (PAIS) is a software system that supports the definition, execution, and analysis of business processes. The execution of process instances is typically recorded in so called event logs. In this paper, we present an approach to automatically generate LTL (Linear Temporal Logic) statements from process-related RBAC (Role-based Access Control) models. These LTL statements are used to check if process executions that are recorded via event logs conform to the access control policies defined via a corresponding RBAC model. To demonstrate our approach, we implemented a RBAC-to-LTL component, and used the ProM tool to test the resulting LTL statements with event logs created from process simulations in CPN tools.
引用
收藏
页码:435 / +
页数:3
相关论文
共 50 条
  • [41] Visual Modeling of Instance-Spanning Constraints in Process-Aware Information Systems
    Gall, Manuel
    Rinderle-Ma, Stefanie
    [J]. ADVANCED INFORMATION SYSTEMS ENGINEERING (CAISE 2017), 2017, 10253 : 597 - 611
  • [42] Agile Cooperative Process-Aware Information Systems (ProGility 2008) Workshop Report
    Weber, Barbara
    Eshuis, Rik
    Mendling, Jan
    Minor, Mirjam
    [J]. 17TH IEEE INTERNATIONAL WORKSHOPS ON ENABLING TECHNOLOGIES: INFRASTRUCTURES FOR COLLABORATIVE ENTERPRISES, PROCEEDINGS, 2008, : 225 - +
  • [43] Cybersecurity for Control Systems: A Process-Aware Perspective
    Khorrami, Farshad
    Krishnamurthy, Prashanth
    Karri, Ramesh
    [J]. IEEE DESIGN & TEST, 2016, 33 (05) : 75 - 83
  • [44] Dependence-Based Data-Aware Process Conformance Checking
    Song, Wei
    Jacobsen, Hans-Arno
    Zhang, Chengzhen
    Ma, Xiaoxing
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2021, 14 (03) : 654 - 667
  • [45] Visual support for work assignment in process-aware information systems: Framework formalisation and implementation
    de Leoni, Massimiliano
    Adams, Michael
    van der Aalst, Wil M. P.
    ter Hofstede, Arthur H. M.
    [J]. DECISION SUPPORT SYSTEMS, 2012, 54 (01) : 345 - 361
  • [46] WED-SQL: A Relational Framework for Design and Implementation of Process-Aware Information Systems
    Padilha, Bruno
    Schwerz, Andre Luis
    Roberto, Rafael Liberato
    [J]. 2017 IEEE 37TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOPS (ICDCSW), 2017, : 364 - 369
  • [47] Impact-Aware Conformance Checking
    Tsoury, Arava
    Soffer, Pnina
    Reinhartz-Berger, Iris
    [J]. BUSINESS PROCESS MANAGEMENT WORKSHOPS (BPM 2019), 2019, 362 : 147 - 159
  • [48] Process-Aware Accounting Information System Based on Business Process Management
    Li, Feifeng
    Fang, Gang
    [J]. Wireless Communications and Mobile Computing, 2022, 2022
  • [49] Organisational resilience through the adaptation of process-aware information systems – a System Dynamics approach
    Papaioannou, Panagiotis
    Antoniadis, Rallis
    Assimakopoulos, Nikitas
    [J]. International Journal of Applied Systemic Studies, 2022, 9 (04) : 401 - 424
  • [50] A systematic review on security in Process-Aware Information Systems - Constitution, challenges, and future directions
    Leitner, Maria
    Rinderle-Ma, Stefanie
    [J]. INFORMATION AND SOFTWARE TECHNOLOGY, 2014, 56 (03) : 273 - 293