Modeling Support for Role-Based Delegation in Process-Aware Information Systems

被引:8
|
作者
Schefer-Wenzl, Sigrid [1 ,2 ]
Strembeck, Mark [1 ]
机构
[1] WU Vienna, Inst Informat Syst & New Media, A-1090 Vienna, Austria
[2] Univ Appl Sci, Competence Ctr IT Secur, A-1090 Vienna, Austria
关键词
Access control; Business processes; Delegation; Duties; RBAC; Security; DRIVEN SECURITY; REVOCATION; POLICIES; RBAC; UML;
D O I
10.1007/s12599-014-0343-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the paper, an integrated approach for the modeling and enforcement of delegation policies in process-aware information systems is presented. In particular, a delegation extension for process-related role-based access control (RBAC) models is specified. The extension is generic in the sense that it can be used to extend process-aware information systems or process modeling languages with support for process-related RBAC delegation models. Moreover, the detection of delegation-related conflicts is discussed and a set of pre-defined resolution strategies for each potential conflict is provided. Thereby, the design-time and runtime consistency of corresponding RBAC delegation models can be ensured. Based on a formal metamodel, UML2 modeling support for the delegation of roles, tasks, and duties is provided. A corresponding case study evaluates the practical applicability of the approach with real-world business processes. Moreover, the approach is implemented as an extension to the BusinessActivity library and runtime engine.
引用
收藏
页码:215 / 237
页数:23
相关论文
共 50 条
  • [1] Modeling Support for Role-Based Delegation in Process-Aware Information Systems
    Sigrid Schefer-Wenzl
    Mark Strembeck
    [J]. Business & Information Systems Engineering, 2014, 6 : 215 - 237
  • [2] An Approach for Consistent Delegation in Process-Aware Information Systems
    Schefer-Wenzl, Sigrid
    Strembeck, Mark
    Baumgrass, Anne
    [J]. BUSINESS INFORMATION SYSTEMS, BIS 2012, 2012, 117 : 60 - 71
  • [3] On the Modeling and Verification of Security-Aware and Process-Aware Information Systems
    Crampton, Jason
    Huth, Michael
    [J]. BUSINESS PROCESS MANAGEMENT WORKSHOPS, PT II, 2012, 100 : 423 - +
  • [4] Visual Support for Work Assignment in Process-Aware Information Systems
    de Leoni, Massimiliano
    van der Aalst, W. M. P.
    ter Hofstede, A. H. M.
    [J]. BUSINESS PROCESS MANAGEMENT, 2008, 5240 : 67 - +
  • [5] PROVIDING INTEGRATED LIFE CYCLE SUPPORT IN PROCESS-AWARE INFORMATION SYSTEMS
    Weber, Barbara
    Reichert, Manfred
    Rinderle-Ma, Stefanie
    Wild, Werner
    [J]. INTERNATIONAL JOURNAL OF COOPERATIVE INFORMATION SYSTEMS, 2009, 18 (01) : 115 - 165
  • [6] Change patterns and change support features in process-aware information systems
    Weber, Barbara
    Rinderle, Stefanie
    Reichert, Manfred
    [J]. ADVANCED INFORMATION SYSTEMS ENGINEERING, PROCEEDINGS, 2007, 4495 : 574 - +
  • [7] Modeling Business Rules for Supervisory Control of Process-Aware Information Systems
    Santos, Eduardo A. P.
    Francisco, Rosemary
    Vieira, Agnelo D.
    Loures, Eduardo de F. R.
    Busetti, Marco A.
    [J]. BUSINESS PROCESS MANAGEMENT WORKSHOPS, PT II, 2012, 100 : 447 - 458
  • [8] Deadline-based escalation in process-aware information systems
    van der Aalst, Wil M. P.
    Rosemann, Michael
    Dumas, Marlon
    [J]. DECISION SUPPORT SYSTEMS, 2007, 43 (02) : 492 - 511
  • [9] Time patterns for process-aware information systems
    Andreas Lanz
    Barbara Weber
    Manfred Reichert
    [J]. Requirements Engineering, 2014, 19 : 113 - 141
  • [10] Process-Aware Information Systems for Emergency Management
    de Leoni, Massimiliano
    Marrella, Andrea
    Russo, Alessandro
    [J]. TOWARDS A SERVICE-BASED INTERNET: SERVICEWAVE 2010 WORKSHOPS, 2011, 6569 : 50 - +