Sixth International Conference on Grid and Cooperative Computing (GCC 2007)
A Role-Based Secure Workflow Model
Urumchi, Xinjiang, China
August 16-August 18
ISBN: 0-7695-2871-6
Chunyan, Ocean University of China, Qingdao,
Shenhua Li, Shandong University, Jinan, 250100, P.R.China
Workflow Management System is used for supporting many day-to-day workflows in large organizations. But heterogeneous and distributed computing systems make security management of WFMS decentralized, thus its security must be noticed. In this paper, we propose a role-based secure workflow model which realizes the principle of separation of duties (SoD), the principle of least privilege, integrity, authorization and availability. We also portray the whole model as a multi-layered architecture with a multilayered state graph for expressing and analyzing the flow of authorization. The layers are, respectively, role layer, task layer, control layer and data layer.
Citation:
Chunyan , Jianliang Xu, Shenhua Li, Mingqiang Wang, "A Role-Based Secure Workflow Model," gcc, pp.764-774, Sixth International Conference on Grid and Cooperative Computing (GCC 2007), 2007