Task-activity Based Access Control for Process Collaboration Environments

Yahui Lu,Li Zhang,Jiaguang Sun
DOI: https://doi.org/10.1016/j.compind.2009.02.009
IF: 10
2009-01-01
Computers in Industry
Abstract:The fast evolving workflow technologies facilitate organizations to interact and cooperate with each other to achieve their business goals by process collaborations. Task-role based access control is an important security mechanism to protect data and resources in information systems. However, the traditional centralized authorization and administration mechanism in access control can not satisfy the administrative requirements in process collaboration environments. In this paper, we propose a domain based administration model for task-role based access control (DATRBAC), in which the authorization and administration permissions are distributed to multiple administrative domains and administrative roles. Then we propose the solution to detect and resolve the conflicts between access control policies defined by different administrative roles. We also described the implementation of the model in the PLM product and the experiments based on the practical application data.
What problem does this paper attempt to address?