16th Annual Computer Security Applications Conference (ACSAC'00)
Dynamic access control through Petri net workflows
New Orleans, Louisiana
December 11-December 15
ISBN: 0-7695-0859-6
Access control is an important protection mechanism for information systems. An access control matrix grants subjects privileges to objects. Today, access control matrices are static they rarely change over time. This paper shows how to make access control matrices dynamic by means of workflows. Access rights are granted according to the state of the workflow. By this practice the risk of data misuse is decreased which is proven through an equation given in the paper. The concept of workflow is defined by Petri nets which offer a solid mathematical foundation and are well suited to represent discrete models such as workflows.
Index Terms:
information systems; Petri nets; authorisation; workflow management software; dynamic access control; Petri net workflows; protection mechanism; information systems; access control matrix; privileges; data misuse
Citation:
K. Knorr, "Dynamic access control through Petri net workflows," acsac, pp.159, 16th Annual Computer Security Applications Conference (ACSAC'00), 2000