Towards a role-based framework for distributed systems management

被引:33
|
作者
Lupu E.C. [1 ]
Sloman M. [1 ]
机构
[1] Department of Computing, Imperial College, London, SW7 2BZ
关键词
Authorization; Management policy; Management roles; Obligation; Policy conflicts; Role interactions;
D O I
10.1023/A:1018742004992
中图分类号
学科分类号
摘要
Roles have been widely used for modeling the authority, responsibility, functions, and interactions, associated with manager positions within organizations. In this paper, we discuss the issues related to specifying roles for both human and automated managers of distributed computer systems. The starting point is that a role can be defined in terms of the authorization and obligation policies, for a particular manager position, which specify what actions the manager is permitted or is obliged to do on a set of target objects. This permits individuals to be assigned or removed from positions without respecifying the policies for the role. However these policies are insufficient for fully specifying relationships between managers and the targets they manage or between different manager roles. There is a need to specify the interaction protocols and how managers coordinate and synchronize their activities. The role-based framework consists of a set of tools enabling the creation of roles from policies, the specification of the concurrency constraints for role activities and the specification of protocols for role interaction. In addition, the issues related to conflicts which can occur between policies within a role or between interacting roles are briefly discussed. © 1997 Plenum Publishing Corporation.
引用
收藏
页码:5 / 30
页数:25
相关论文
共 50 条
  • [1] A role-based semantic authorization framework for workflow management systems
    Liu, JX
    Chen, HY
    Tang, MD
    [J]. CHINESE JOURNAL OF ELECTRONICS, 2006, 15 (01) : 55 - 59
  • [2] Role-based concurrency control for distributed systems
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. 20TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 1, PROCEEDINGS, 2006, : 407 - +
  • [3] Role-based serializability for distributed object systems
    Tanaka, Youhei
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2006, 4080 : 801 - 811
  • [4] Role-based security for distributed object systems
    Yialelis, N
    Lupu, E
    Sloman, M
    [J]. PROCEEDINGS OF THE 5TH WORKSHOPS ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WET ICE '96), 1996, : 80 - 85
  • [5] Extended role-based sensor management framework
    Kim, S
    Moon, M
    Yeom, K
    [J]. 8TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY, VOLS 1-3: TOWARD THE ERA OF UBIQUITOUS NETWORKS AND SOCIETIES, 2006, : U175 - U180
  • [6] Towards a role-based framework approach for user interfaces
    Renouf, DW
    HendersonSellers, B
    [J]. AUSTRALIAN COMPUTER JOURNAL, 1996, 28 (03): : 96 - 106
  • [7] Role-based security for configurable distributed control systems
    Hauf, M
    Schwarz, J
    Polze, A
    [J]. SIXTH INTERNATIONAL WORKSHOP ON OBJECT-ORIENTED REAL-TIME DEPENDABLE SYSTEMS, PROCEEDINGS, 2001, : 111 - 118
  • [8] RT:: A role-based trust-management framework
    Li, NH
    Mitchell, JC
    [J]. DARPA INFORMATION SURVIVABILITY CONFERENCE AND EXPOSITION, VOL I, PROCEEDINGS, 2003, : 201 - 212
  • [9] Design of a role-based trust-management framework
    Li, NH
    Mitchell, JC
    Winsborough, WH
    [J]. 2002 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2002, : 114 - 130
  • [10] A distributed multi-user role-based model integration framework
    Dorow, KE
    Gorton, I
    Thurman, DA
    [J]. BROWNFIELDS: MULTIMEDIA MODELLING AND ASSESSMENT, 2004, : 11 - 17