BP-XACML an Authorisation Policy Language for Business Processes

被引:2
|
作者
Alissa, Khalid [1 ,2 ]
Reid, Jason [1 ]
Dawson, Ed [1 ]
Salim, Farzad [1 ]
机构
[1] Queensland Univ Technol, Inst Future Environm, Brisbane, Qld 4001, Australia
[2] KACST, Riyadh, Saudi Arabia
关键词
XACML; BPM; Workflow; Authorisation management; Authorisation policy language;
D O I
10.1007/978-3-319-19962-7_18
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
XACML has become the defacto standard for enterprisewide, policy-based access control. It is a structured, extensible language that can express and enforce complex access control policies. There have been several efforts to extend XACML to support specific authorisation models, such as the OASIS RBAC profile to support Role Based Access Control. A number of proposals for authorisation models that support business processes and workflow systems have also appeared in the literature. However, there is no published work describing an extension to allow XACML to be used as a policy language with these models. This paper analyses the specific requirements of a policy language to express and enforce business process authorisation policies. It then introduces BP-XACML, a new profile that extends the RBAC profile for XACML so it can support business process authorisation policies. In particular, BP-XACML supports the notion of tasks, and constraints at the level of a task instance, which are important requirements in enforcing business process authorisation policies.
引用
收藏
页码:307 / 325
页数:19
相关论文
共 50 条
  • [21] Modeling of knowledge intensive business processes with the declaration language KMDL
    Gronau, N
    Weber, E
    Innovations Through Information Technology, Vols 1 and 2, 2004, : 284 - 287
  • [22] BP-Com: A Service Mapping Tool for Rapid Development of Business Processes
    Afzal, Ayesha
    Zahid, Muhammad Adeel
    Akhtar, Ahmed
    Shafiq, Basit
    Shamail, Shafay
    Elahraf, Abeer
    Vaidya, Jaideep
    Adam, Nabil
    2020 IEEE 40TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS), 2020, : 1235 - 1238
  • [23] Sixth International Workshop on Evolutionary Business Processes (EVL-BP 2013)
    Asadi, Mohsen
    Mohabbati, Bardia
    Groener, Gerd
    17TH IEEE INTERNATIONAL ENTERPRISE DISTRIBUTED OBJECT COMPUTING CONFERENCE WORKSHOPS (EDOCW 2013), 2013, : 41 - +
  • [24] BP-Mon: Query-based monitoring of BPEL business processes
    Beeri, Catriel
    Eyal, Anat
    Milo, Tova
    Pilberg, Alon
    SIGMOD RECORD, 2008, 37 (01) : 21 - 24
  • [25] Business and public policy: responses to environmental and social protection processes
    Darnall, Nicole
    POLICY SCIENCES, 2012, 45 (02) : 193 - 197
  • [26] Business and Public Policy: Responses to Environmental and Social Protection Processes
    Bansal, Pratima
    ADMINISTRATIVE SCIENCE QUARTERLY, 2011, 56 (03) : 474 - 476
  • [27] Business and Public Policy: Responses to Environmental and Social Protection Processes
    Delmas, Magali A.
    BUSINESS ETHICS QUARTERLY, 2012, 22 (04) : 771 - 775
  • [28] Integrating Business Policy into System Engineering Processes using Ontology
    Azzam, Said Rabah
    Ayodele, Taiwo
    Vipoopinyo, Jarupa
    Zhou, Shikun
    JCPC: 2009 JOINT CONFERENCE ON PERVASIVE COMPUTING, 2009, : 331 - 334
  • [29] Approximate policy iteration with a policy language bias: Solving relational markov decision processes
    Fern, Alan
    Yoon, Sungwook
    Givan, Robert
    Journal of Artificial Intelligence Research, 1600, 25 : 75 - 118
  • [30] Approximate policy iteration with a policy language bias: Solving relational Markov decision processes
    Fern, A
    Yoon, S
    Givan, R
    JOURNAL OF ARTIFICIAL INTELLIGENCE RESEARCH, 2006, 25 : 75 - 118