Originator usage control with business process slicing
Ziyi Su, and Fr\'ed\'erique Biennier

TL;DR
This paper introduces a business process slicing method and Service Call Graphs to enable dynamic originator usage control in enterprise collaborations, maintaining policies throughout asset lifecycles.
Contribution
It presents a novel process slicing approach and SCG extension for real-time, fine-grained downstream usage control in collaborative enterprise environments.
Findings
Effective asset derivation pattern capture in business processes.
Successful implementation of context-aware security policy enforcement.
Feasibility demonstrated through experiments with WS-BPEL processes.
Abstract
Originator Control allows information providers to define the information re-dissemination condition. Combined with usage control policy, fine-grained 'downstream usage control' can be achieved, which specifies what attributes the downstream consumers should have and how data is used. This paper discusses originator usage control, paying particular attention to enterprise-level dynamic business federations. Rather than 'pre-defining' the information re-dissemination paths, our business process slicing method 'capture' the asset derivation pattern, allowing to maintain originators' policies during the full lifecycle of assets in a collaborative context. First, we propose Service Call Graph (SCG), based on extending the System Dependency Graph, to describe dependencies among partners. When SCG (and corresponding 'service call tuple' list) is built for a business process, it is analyzed to…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAccess Control and Trust · Service-Oriented Architecture and Web Services · Cloud Data Security Solutions
