Workflow Dynamic Authorization Model with Role-Based Access Control

裘炅,谭建荣,张树有,马晨华
DOI: https://doi.org/10.3321/j.issn:1003-9775.2004.07.020
2004-01-01
Abstract:The model formally describes the key elements of access control such as role, user, privilege, task unit, authorization strategy, authorization constraint and the relationship between these elements. We identify the following four types of authorization constraints: require role constraints, require user constraints, deny role constraints and deny user constraints, then provide constraint consistency checking rules upon them. In this model, authorization flow is synchronized with workflow and the workflow can be efficiently executed through the constraint consistency checking rules. The main advantage of the model is its comprehensiveness, flexibility and practicability.
What problem does this paper attempt to address?