BP-XACML an Authorisation Policy Language for Business Processes

被引:2
|
作者
Alissa, Khalid [1 ,2 ]
Reid, Jason [1 ]
Dawson, Ed [1 ]
Salim, Farzad [1 ]
机构
[1] Queensland Univ Technol, Inst Future Environm, Brisbane, Qld 4001, Australia
[2] KACST, Riyadh, Saudi Arabia
关键词
XACML; BPM; Workflow; Authorisation management; Authorisation policy language;
D O I
10.1007/978-3-319-19962-7_18
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
XACML has become the defacto standard for enterprisewide, policy-based access control. It is a structured, extensible language that can express and enforce complex access control policies. There have been several efforts to extend XACML to support specific authorisation models, such as the OASIS RBAC profile to support Role Based Access Control. A number of proposals for authorisation models that support business processes and workflow systems have also appeared in the literature. However, there is no published work describing an extension to allow XACML to be used as a policy language with these models. This paper analyses the specific requirements of a policy language to express and enforce business process authorisation policies. It then introduces BP-XACML, a new profile that extends the RBAC profile for XACML so it can support business process authorisation policies. In particular, BP-XACML supports the notion of tasks, and constraints at the level of a task instance, which are important requirements in enforcing business process authorisation policies.
引用
收藏
页码:307 / 325
页数:19
相关论文
共 50 条
  • [41] Re-expressing Business Processes Information from Corporate Documents into Controlled Language
    Manrique-Losada, Bell
    Zapata-Jaramillo, Carlos M.
    Burgos, Diego A.
    NATURAL LANGUAGE PROCESSING AND INFORMATION SYSTEMS, NLDB 2016, 2016, 9612 : 376 - 383
  • [42] Towards a Shared Ledger Business Collaboration Language Based on Data-Aware Processes
    Hull, Richard
    Batra, Vishal S.
    Chen, Yi-Min
    Deutsch, Alin
    Heath, Fenno F. Terry, III
    Vianu, Victor
    SERVICE-ORIENTED COMPUTING, (ICSOC 2016), 2016, 9936 : 18 - 36
  • [43] Logic, reasoning and a programming language for simulating economic and business processes with artificially intelligent agents
    Edmonds, B
    Moss, S
    Wallis, S
    ARTIFICIAL INTELLIGENCE IN ECONOMICS AND MANAGEMENT: AN EDITED PROCEEDINGS ON THE FOURTH INTERNATIONAL WORKSHOP: AIEM4, 1996, : 221 - 230
  • [44] How well can a large language model explain business processes as perceived by users?
    Fahland, Dirk
    Fournier, Fabiana
    Limonad, Lior
    Skarbovsky, Inna
    Swevels, Ava J. E.
    DATA & KNOWLEDGE ENGINEERING, 2025, 157
  • [45] Using Unified Modeling Language to Analyze Business Processes in the Delivery of Child Health Services
    Pecoraro, Fabrizio
    Luzi, Daniela
    INTERNATIONAL JOURNAL OF ENVIRONMENTAL RESEARCH AND PUBLIC HEALTH, 2022, 19 (20)
  • [46] e-Government: the need to implement a business processes management policy in public administration
    Garcia-Gonzalez, Maria
    PROFESIONAL DE LA INFORMACION, 2016, 25 (03): : 473 - 483
  • [47] ADVICE ON DECISION MAKING IN BUSINESS MODELING BY MEANS OF MICROSOFT SOLUTION FRAMEWORK (MSF) AND THE EXECUTIVE LANGUAGE FOR THE BUSINESS PROCESSES MANAGEMENT (BPM)
    Plichta, Anna
    Szominski, Szymon
    PROCEEDINGS 26TH EUROPEAN CONFERENCE ON MODELLING AND SIMULATION ECMS 2012, 2012, : 313 - +
  • [48] Support for the Business Motivation Model in the WS-Policy4MASC Language and MiniZnMASC Middleware
    Lu, Qinghua
    Tosic, Vladimir
    Bannerman, Paul L.
    SERVICE-ORIENTED COMPUTING, 2011, 7084 : 265 - 279
  • [49] RAL: A High-Level User-Oriented Resource Assignment Language for Business Processes
    Cabanillas, Cristina
    Resinas, Manuel
    Ruiz-Cortes, Antonio
    BUSINESS PROCESS MANAGEMENT WORKSHOPS, PT I, 2012, 99 : 50 - 61
  • [50] Studies on the Use of Large Language Models for the Automation of Business Processes in Enterprise Resource Planning Systems
    Schnepf, Jonas
    Engin, Tugranur
    Anderer, Simon
    Scheuermann, Bernd
    NATURAL LANGUAGE PROCESSING AND INFORMATION SYSTEMS, PT I, NLDB 2024, 2024, 14762 : 16 - 31