%0 Journal Article %A WU Rong %T Composited authorization model for workflow applications %D 2011 %R 10.3778/j.issn.1002-8331.2011.02.029 %J Computer Engineering and Applications %P 91-94 %V 47 %N 2 %X Aiming at challenges of dynamic,united and autonomic in authorization management for distributed workflow system,a composited authorization model for workflow application systems is proposed,which combines authorization ideology of RBAC and dynamic access control mechanism of TBAC.The model provides methods of modelling on composition structures and execution relations in a workflow system,thus a corresponding authorization policy can be constructed by composing authorization policies of processing-units,according to composition structures,execution dependences and subject dependences in the workflow system.Formal descriptions of model definitions and composition calculus are presented.Expressive power and consistency of model,compatibility of composition calculus and their security properties are analyzed in detail.Furthermore,the prototype of an authorization control engine for dynamic permission control is introduced.
%U http://cea.ceaj.org/EN/10.3778/j.issn.1002-8331.2011.02.029