计算机与现代化 ›› 2010, Vol. 1 ›› Issue (11): 139-141,.doi: 10.3969/j.issn.1006-2475.2010.11.039

• 信息安全 • 上一篇    下一篇

基于任务和角色的工作流访问控制模型

查宗旬,王命延   

  1. 南昌大学信息工程学院计算机系,江西 南昌330031
  • 收稿日期:2010-05-13 修回日期:1900-01-01 出版日期:2010-11-25 发布日期:2010-11-25

Workflow Access Control Model Based on Task and Role

ZHA Zong-xun, WANG Ming-yan   

  1. Department of Computer, Institute of Information Engineering, Nanchang University, Nanchang 330031, China
  • Received:2010-05-13 Revised:1900-01-01 Online:2010-11-25 Published:2010-11-25

摘要: 提出一种基于角色和任务的工作流访问控制模型,并描述模型中用户、角色、许可、活动等要素间的指派关系和该模型的静态、动态约束规则,然后以此模型为上下文背景提出一个描述基于角色和任务的工作流授权约束的直观的形式化语言,称为ERCL。它以系统函数、集合一级变量符作为基本元素。最后给出一个该模型在实际工作流系统中的应用。

关键词: 工作流, 访问控制, 角色, 任务

Abstract: This paper proposes a role and task based workflow access control model, describes the relationship both the key elements of the model, static and dynamic constraints. And then an intuitive formal language called ERCL is proposed, which takes the model as context to specify workflow authorization constraints based on role and task. ERCL uses system functions, sets and variable symbols as its basic elements. Finally, gives a application of the model in a workflow system.

Key words: workflow, access control, role, task

中图分类号: