作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (4): 152-154. doi: 10.3969/j.issn.1000-3428.2010.04.053

• 安全技术 • 上一篇    下一篇

基于RBAC的工作流管理系统授权约束方法

单徐梅1,虞慧群2   

  1. (1. 华东理工大学计算机科学与工程系,上海 200237;2. 上海市计算机软件评测重点实验室,上海 201112)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2010-02-20 发布日期:2010-02-20

Authorization Constraint Method in Workflow Management Systems Based on RBAC

SHAN Xu-mei1, YU Hui-qun2   

  1. (1. Department of Computer Science and Engineering, East China University of Science and Technology, Shanghai 200237; 2. Shanghai Key Laboratory of Computer Software Evaluating and Testing, Shanghai 201112)
  • Received:1900-01-01 Revised:1900-01-01 Online:2010-02-20 Published:2010-02-20

摘要: 针对工作流管理系统动态授权的特性,在基于角色的访问控制(RBAC)模型基础上,提出一种权限约束支持的RBAC模型,利用Datalog逻辑语言描述约束策略,借助Datalog推理机实现一个“任务角色”分配的授权算法,解决工作流管理系统动态授权约束的问题。

关键词: 授权约束, 基于角色的访问控制, 工作流, Datalog逻辑语言

Abstract: To satisfy dynamic authorization of WorkFlow Management System(WFMS), this paper proposes a Role-Based Access Control(RBAC) model that supports authorization constraint. In this model, authorization constraint model for WFMS is specified by Datalog logical language and an authorization algorithm is implemented using Datalog’s decision, making mechanisms. WFMS’s dynamic constrained authorization problem is solved with the method.

Key words: authorization constraint, Role-Based Access Control(RBAC), workflow, Datalog logical language

中图分类号: