{"title":"CapBasED-AMS中安全实施的范例","authors":"P. Hung, K. Karlapalem","doi":"10.1109/COOPIS.1997.613805","DOIUrl":null,"url":null,"abstract":"The CapBasED-AMS (CAPability-BASed and Event-Driven Activity Management System) deals with the management and execution of activities. A problem-solving agent (PSA) is a human, a hardware system or a software system having the ability to execute activities. An activity consists of multiple interdependent tasks that need to be coordinated, scheduled and executed by a set of PSAs. Since security is an essential and integral part of activities, the activity management system has to manage and execute the activities in a secure way. In the CapBasED-AMS, threats such as unauthorized access or modification are identified as events. The security pilferage or illegal violation of privacy through the accessing of specification-time, compile-time or run-time data from the activity management system and the PSAs is monitored, controlled and reported. We present a secure CapBasED-AMS by taking into consideration: the system infrastructure; secure match-making with additional security constraints; security policies and a secure PSA; the task coordination model for security resource control from the PSA viewpoint, the organization viewpoint, the task viewpoint and the activity viewpoint by adapting a role-based resource security model; and secure execution of tasks with the PSA role-based security model.","PeriodicalId":293694,"journal":{"name":"Proceedings of CoopIS 97: 2nd IFCIS Conference on Cooperative Information Systems","volume":"4 5 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1997-06-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":"{\"title\":\"A paradigm for security enforcement in CapBasED-AMS\",\"authors\":\"P. Hung, K. Karlapalem\",\"doi\":\"10.1109/COOPIS.1997.613805\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The CapBasED-AMS (CAPability-BASed and Event-Driven Activity Management System) deals with the management and execution of activities. A problem-solving agent (PSA) is a human, a hardware system or a software system having the ability to execute activities. An activity consists of multiple interdependent tasks that need to be coordinated, scheduled and executed by a set of PSAs. Since security is an essential and integral part of activities, the activity management system has to manage and execute the activities in a secure way. In the CapBasED-AMS, threats such as unauthorized access or modification are identified as events. The security pilferage or illegal violation of privacy through the accessing of specification-time, compile-time or run-time data from the activity management system and the PSAs is monitored, controlled and reported. We present a secure CapBasED-AMS by taking into consideration: the system infrastructure; secure match-making with additional security constraints; security policies and a secure PSA; the task coordination model for security resource control from the PSA viewpoint, the organization viewpoint, the task viewpoint and the activity viewpoint by adapting a role-based resource security model; and secure execution of tasks with the PSA role-based security model.\",\"PeriodicalId\":293694,\"journal\":{\"name\":\"Proceedings of CoopIS 97: 2nd IFCIS Conference on Cooperative Information Systems\",\"volume\":\"4 5 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"1997-06-24\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"7\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of CoopIS 97: 2nd IFCIS Conference on Cooperative Information Systems\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/COOPIS.1997.613805\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of CoopIS 97: 2nd IFCIS Conference on Cooperative Information Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/COOPIS.1997.613805","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
A paradigm for security enforcement in CapBasED-AMS
The CapBasED-AMS (CAPability-BASed and Event-Driven Activity Management System) deals with the management and execution of activities. A problem-solving agent (PSA) is a human, a hardware system or a software system having the ability to execute activities. An activity consists of multiple interdependent tasks that need to be coordinated, scheduled and executed by a set of PSAs. Since security is an essential and integral part of activities, the activity management system has to manage and execute the activities in a secure way. In the CapBasED-AMS, threats such as unauthorized access or modification are identified as events. The security pilferage or illegal violation of privacy through the accessing of specification-time, compile-time or run-time data from the activity management system and the PSAs is monitored, controlled and reported. We present a secure CapBasED-AMS by taking into consideration: the system infrastructure; secure match-making with additional security constraints; security policies and a secure PSA; the task coordination model for security resource control from the PSA viewpoint, the organization viewpoint, the task viewpoint and the activity viewpoint by adapting a role-based resource security model; and secure execution of tasks with the PSA role-based security model.