Skip to main content

2011 | OriginalPaper | Buchkapitel

Adaptive RBAC in Complex Event-Driven BPM Systems

verfasst von : Bernardo N. Yahya, Hyerim Bae

Erschienen in: Dynamics in Logistics

Verlag: Springer Berlin Heidelberg

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Various real-time systems have been proposed for a wide range of business environments recently. One of the real-time system components is event. A single event is sometime meaningless. However, while complex events are incoming, automatic access control assignment is necessary to control real-time business process management systems (BPMS) and impart business process efficiency. Given the complexity of such events, access control rules are generated to ensure security, privacy, accuracy and conformity. This paper proposes a mechanism to handle complex-event-driven access control in BPMS for logistic. The separation-of-duty (SoD) constraint, as an extension of the typical role-based access control (RBAC), is used to invoke the system based on certain event types.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
Zurück zum Zitat Al-Kahtani, M. A., Sandhu, R., 2002, A Model for Attribute-Based User-Role Assignment, Proceedings of the 18th ACSAC ‘02, pp. 353–362 Al-Kahtani, M. A., Sandhu, R., 2002, A Model for Attribute-Based User-Role Assignment, Proceedings of the 18th ACSAC ‘02, pp. 353–362
Zurück zum Zitat Bae, J., Bae, H., Kang, S., Kim, Y., 2004, Automatic Control of Workflow Process using ECA rules, IEEE Trans. On Knowledge and Data Engineering, Vol. 16, No. 8, pp. 1010–1023CrossRef Bae, J., Bae, H., Kang, S., Kim, Y., 2004, Automatic Control of Workflow Process using ECA rules, IEEE Trans. On Knowledge and Data Engineering, Vol. 16, No. 8, pp. 1010–1023CrossRef
Zurück zum Zitat Cruz, I. F., Gjomemo, R., Lin, B., Orsini, M., 2008, A Constraint and Attribute Based Security Framework for Dynamic Role Assignment in Collaborative Environments, CollaborateCom, pp. 1–18 Cruz, I. F., Gjomemo, R., Lin, B., Orsini, M., 2008, A Constraint and Attribute Based Security Framework for Dynamic Role Assignment in Collaborative Environments, CollaborateCom, pp. 1–18
Zurück zum Zitat Ferraiolo, D. F., Kuhn, D. R., Chandramouli, R., 2003, Role-based Access Control, Artech House Ferraiolo, D. F., Kuhn, D. R., Chandramouli, R., 2003, Role-based Access Control, Artech House
Zurück zum Zitat Joshi, J. B. D., Bertino, E., Shafiq, B., Ghafoor, A., 2003, Dependencies and Separation of Duty Constraints in GTRBAC, SACMAT ‘03, pp. 51–64 Joshi, J. B. D., Bertino, E., Shafiq, B., Ghafoor, A., 2003, Dependencies and Separation of Duty Constraints in GTRBAC, SACMAT ‘03, pp. 51–64
Zurück zum Zitat Kong, J., Jung, J.Y., Park, J., 2008, Event-Driven Service Coordination for Business Process Integration in Ubiquitous Enterprises, Computers & Industrial Engineering, 57, pp. 14–26CrossRef Kong, J., Jung, J.Y., Park, J., 2008, Event-Driven Service Coordination for Business Process Integration in Ubiquitous Enterprises, Computers & Industrial Engineering, 57, pp. 14–26CrossRef
Zurück zum Zitat Leune, K., 2004, An Event-based Framework for Service Oriented Computing, Infolab Technical Report Series, No. 14 Leune, K., 2004, An Event-based Framework for Service Oriented Computing, Infolab Technical Report Series, No. 14
Zurück zum Zitat Luckham, D., 2002, The Power of Events, Addison Wesley, Boston Luckham, D., 2002, The Power of Events, Addison Wesley, Boston
Zurück zum Zitat Shafiq, B., Masood, A., Joshi, J., Ghafoor, A., 2005, A Role-Based Access Control Policy Verification Framework for Real-Time Systems, Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems, pp. 13–20 Shafiq, B., Masood, A., Joshi, J., Ghafoor, A., 2005, A Role-Based Access Control Policy Verification Framework for Real-Time Systems, Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems, pp. 13–20
Zurück zum Zitat Tombros, D., Geppert, A., Dittrich, K. R., 1997, Semantics of Reactive Components in Event-Driven Workflow Execution, Proc. 9th Int’l Conference on Advanced Information Systems Engineering, pp. 409–422 Tombros, D., Geppert, A., Dittrich, K. R., 1997, Semantics of Reactive Components in Event-Driven Workflow Execution, Proc. 9th Int’l Conference on Advanced Information Systems Engineering, pp. 409–422
Zurück zum Zitat Yahya, B. N., Kwon, M., Bae, H., 2007, RBAC for Supply Chain Process Monitoring, International Conference on Convergence Information Technology, Nov. 2007 Yahya, B. N., Kwon, M., Bae, H., 2007, RBAC for Supply Chain Process Monitoring, International Conference on Convergence Information Technology, Nov. 2007
Metadaten
Titel
Adaptive RBAC in Complex Event-Driven BPM Systems
verfasst von
Bernardo N. Yahya
Hyerim Bae
Copyright-Jahr
2011
Verlag
Springer Berlin Heidelberg
DOI
https://doi.org/10.1007/978-3-642-11996-5_18