论文部分内容阅读
业务流程访问控制机制是组合Web服务应用中的难点,现有的访问控制模型忽视了流程活动之间动态交互性和协同性的特点,不能适应业务流程权限的动态管理.本文提出一种使用控制支持的组合Web服务业务流程动态访问控制模型WS-BPUCON,模型通过角色和权限的分离解除了组织模型和业务流程模型的耦合关系,能够根据分布式开放网络环境中的属性信息,基于授权、职责和条件三种约束决定策略来检查访问控制决策,具有上下文感知、细粒度访问管理等特性,给出了WS-BPUCON的实施框架.
Business process access control mechanism is a combination of Web service applications difficult, the existing access control model ignores the process of dynamic interaction between activities and synergies, can not adapt to the dynamic management of business process permissions.This paper presents a use of control Supported Combinations Web Services Business Processes Dynamic Access Control Model WS-BPUCON, a model that removes the coupling between organizational models and business process models through the separation of roles and permissions, based on the attribute information in a distributed, open network environment, on the basis of authorizations, responsibilities And conditions of three kinds of constraint decision strategy to check the access control decision-making, with context-aware, fine-grained access management and other characteristics, gives the WS-BPUCON implementation framework.