RTME: Extension of Role-Task Modeling for the Purpose of Access Control Specification

International audience Interactive systems are often developed without taking security concerns into account. We investigated a combination of both HCI models and access control specifications to overcome this problem. The motivation of a combined approach is to narrow the gap between different mode...

Full description

Bibliographic Details
Main Author: Bomsdorf, Birgit
Other Authors: University of Applied Sciences Fulda, Regina Bernhaupt; Peter Forbrig; Jan Gulliksen; Marta Lárusdóttir
Format: Conference Object
Language:English
Published: HAL CCSD 2010
Subjects:
Online Access:https://hal.inria.fr/hal-01055208
https://hal.inria.fr/hal-01055208/document
https://hal.inria.fr/hal-01055208/file/Paper30_ohne_page_Nr.pdf
https://doi.org/10.1007/978-3-642-16488-0_12
Description
Summary:International audience Interactive systems are often developed without taking security concerns into account. We investigated a combination of both HCI models and access control specifications to overcome this problem. The motivation of a combined approach is to narrow the gap between different modeling perspectives and to provide a coherent mapping of modeling concepts. The general goal is a systematic introduction and tool support of security concerns in model-based development of interactive system. In this paper we report results of our work currently concentrating on the early design steps. The focus of this presentation is on the specification of task and role hierarchies, conflicting privileges and related tool support.