论文部分内容阅读
在研究工作流已有安全策略的基础上,提出了基于工作流任务实例变迁的动态访问控制模型,通过角色执行工作流任务实例,并结合工作流任务上下文内容确定任务实例所处的不同状态,动态地将任务权限传递给执行角色,用户通过角色分配自动拥有执行角色的访问权限,实现了对工作流的动态安全访问。同时,对模型的动态访问控制机制进行了形式化描述,并结合电力系统工作流给出了具体的动态访问控制设计。
Based on the study of workflow security strategy, this paper proposes a dynamic access control model based on the transition of workflow task instance, and realizes the workflow task instance through the role, and determines the different states of the task instance based on context content of the workflow task, Dynamically pass the task permissions to the execution role, users automatically have the access to execute the role through the role assignment, to achieve dynamic and secure access to the workflow. At the same time, the dynamic access control mechanism of the model is formalized, and the concrete dynamic access control design is given in combination with the power system workflow.