Skip to main content
Top

2011 | OriginalPaper | Chapter

Adaptive RBAC in Complex Event-Driven BPM Systems

Authors : Bernardo N. Yahya, Hyerim Bae

Published in: Dynamics in Logistics

Publisher: Springer Berlin Heidelberg

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Various real-time systems have been proposed for a wide range of business environments recently. One of the real-time system components is event. A single event is sometime meaningless. However, while complex events are incoming, automatic access control assignment is necessary to control real-time business process management systems (BPMS) and impart business process efficiency. Given the complexity of such events, access control rules are generated to ensure security, privacy, accuracy and conformity. This paper proposes a mechanism to handle complex-event-driven access control in BPMS for logistic. The separation-of-duty (SoD) constraint, as an extension of the typical role-based access control (RBAC), is used to invoke the system based on certain event types.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
go back to reference Al-Kahtani, M. A., Sandhu, R., 2002, A Model for Attribute-Based User-Role Assignment, Proceedings of the 18th ACSAC ‘02, pp. 353–362 Al-Kahtani, M. A., Sandhu, R., 2002, A Model for Attribute-Based User-Role Assignment, Proceedings of the 18th ACSAC ‘02, pp. 353–362
go back to reference Bae, J., Bae, H., Kang, S., Kim, Y., 2004, Automatic Control of Workflow Process using ECA rules, IEEE Trans. On Knowledge and Data Engineering, Vol. 16, No. 8, pp. 1010–1023CrossRef Bae, J., Bae, H., Kang, S., Kim, Y., 2004, Automatic Control of Workflow Process using ECA rules, IEEE Trans. On Knowledge and Data Engineering, Vol. 16, No. 8, pp. 1010–1023CrossRef
go back to reference Cruz, I. F., Gjomemo, R., Lin, B., Orsini, M., 2008, A Constraint and Attribute Based Security Framework for Dynamic Role Assignment in Collaborative Environments, CollaborateCom, pp. 1–18 Cruz, I. F., Gjomemo, R., Lin, B., Orsini, M., 2008, A Constraint and Attribute Based Security Framework for Dynamic Role Assignment in Collaborative Environments, CollaborateCom, pp. 1–18
go back to reference Ferraiolo, D. F., Kuhn, D. R., Chandramouli, R., 2003, Role-based Access Control, Artech House Ferraiolo, D. F., Kuhn, D. R., Chandramouli, R., 2003, Role-based Access Control, Artech House
go back to reference Joshi, J. B. D., Bertino, E., Shafiq, B., Ghafoor, A., 2003, Dependencies and Separation of Duty Constraints in GTRBAC, SACMAT ‘03, pp. 51–64 Joshi, J. B. D., Bertino, E., Shafiq, B., Ghafoor, A., 2003, Dependencies and Separation of Duty Constraints in GTRBAC, SACMAT ‘03, pp. 51–64
go back to reference Kong, J., Jung, J.Y., Park, J., 2008, Event-Driven Service Coordination for Business Process Integration in Ubiquitous Enterprises, Computers & Industrial Engineering, 57, pp. 14–26CrossRef Kong, J., Jung, J.Y., Park, J., 2008, Event-Driven Service Coordination for Business Process Integration in Ubiquitous Enterprises, Computers & Industrial Engineering, 57, pp. 14–26CrossRef
go back to reference Leune, K., 2004, An Event-based Framework for Service Oriented Computing, Infolab Technical Report Series, No. 14 Leune, K., 2004, An Event-based Framework for Service Oriented Computing, Infolab Technical Report Series, No. 14
go back to reference Luckham, D., 2002, The Power of Events, Addison Wesley, Boston Luckham, D., 2002, The Power of Events, Addison Wesley, Boston
go back to reference Shafiq, B., Masood, A., Joshi, J., Ghafoor, A., 2005, A Role-Based Access Control Policy Verification Framework for Real-Time Systems, Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems, pp. 13–20 Shafiq, B., Masood, A., Joshi, J., Ghafoor, A., 2005, A Role-Based Access Control Policy Verification Framework for Real-Time Systems, Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems, pp. 13–20
go back to reference Tombros, D., Geppert, A., Dittrich, K. R., 1997, Semantics of Reactive Components in Event-Driven Workflow Execution, Proc. 9th Int’l Conference on Advanced Information Systems Engineering, pp. 409–422 Tombros, D., Geppert, A., Dittrich, K. R., 1997, Semantics of Reactive Components in Event-Driven Workflow Execution, Proc. 9th Int’l Conference on Advanced Information Systems Engineering, pp. 409–422
go back to reference Yahya, B. N., Kwon, M., Bae, H., 2007, RBAC for Supply Chain Process Monitoring, International Conference on Convergence Information Technology, Nov. 2007 Yahya, B. N., Kwon, M., Bae, H., 2007, RBAC for Supply Chain Process Monitoring, International Conference on Convergence Information Technology, Nov. 2007
Metadata
Title
Adaptive RBAC in Complex Event-Driven BPM Systems
Authors
Bernardo N. Yahya
Hyerim Bae
Copyright Year
2011
Publisher
Springer Berlin Heidelberg
DOI
https://doi.org/10.1007/978-3-642-11996-5_18