Abstract | ||
---|---|---|
In a mobile computing environment, distributed business processes are executed in varying contexts. Context-aware access control mechanisms help to protect sensitive data and services in mobile application scenarios. Context constraints are a means to consider context information in access control decisions. In this paper, we integrate context constraints with process-related role-based access control RBAC to support the secure and context-dependent task execution. In particular, we specify a formal metamodel for process-related and context-aware RBAC models. Subsequently, we define a domain-specific extension for UML Activity diagrams that enables the integrated modelling of context constraints and business processes. In addition, we implemented a software platform that enables the specification and enforcement of process-related context-aware RBAC policies. |
Year | DOI | Venue |
---|---|---|
2013 | 10.1504/IJWMC.2013.057387 | IJWMC |
Keywords | Field | DocType |
business process,mobile application scenario,context information,context constraint,varying context,process-related role-based access control,mobile business process,context-aware rbac model,access control decision,context-aware access control mechanism,process-related context-aware rbac policy,object constraint language,unified modelling language,access control,security,business process modelling | Mobile computing,Business process,Computer science,Role-based access control,Activity diagram,Access control,Business process modeling,Object Constraint Language,Metamodeling,Distributed computing | Journal |
Volume | Issue | Citations |
6 | 5 | 10 |
PageRank | References | Authors |
0.51 | 52 | 2 |
Name | Order | Citations | PageRank |
---|---|---|---|
Sigrid Schefer-Wenzl | 1 | 64 | 7.42 |
Mark Strembeck | 2 | 874 | 57.86 |