Publication Details
Mandatory Access Control in Workflow Systems
access control, workflow, MAC, secrecy, integrity
This paper analysis problems of mandatory access control in strongly distributed information systems that solve computatioonal tasks with long time durability (workflow management systems). We show that problem of mandatory access control may be solved on several levels.There is a strong difference between classification of data the system works with and classification of tasks' definitions. The latter situation is more difficult not only from the theoretical reasons but also from the administration and functional point of view. We are developing procedures for the task execution management that are based on the unified classifcation of data that are processed. This classification may be used not only for controlling the access to the resources but also for the determination of subjects that are allowed to execute parts of the workflow tasks (task-steps).
This paper analysis problems of mandatory access control in strongly distributed information systems that solve computatioonal tasks with long time durability (workflow management systems). We show that problem of mandatory access control may be solved on several levels.There is a strong difference between classification of data the system works with and classification of tasks' definitions. The latter situation is more difficult not only from the theoretical reasons but also from the administration and functional point of view. We are developing procedures for the task execution management that are based on the unified classifcation of data that are processed. This classification may be used not only for controlling the access to the resources but also for the determination of subjects that are allowed to execute parts of the workflow tasks (task-steps).
@INPROCEEDINGS{FITPUB6700, author = "Daniel Cvr\v{c}ek", title = "Mandatory Access Control in Workflow Systems", pages = "247--254", booktitle = "Knowledge-based Software Engineering", year = 2000, location = "Brno, CZ", publisher = "IOS Press", ISBN = "1-58603-060-4", language = "english", url = "https://www.fit.vut.cz/research/publication/6700" }