A Delegation Framework for Access Control in WfMS Based on Tasks and Roles

Access control is important for protecting the information integrities in WfMS's. Compared to conventional access control models such as discretionary, mandatory, and role-based access control models, an access-control model based on both tasks and roles meets more requirements for modern enterprise environments. However, there are no discussions on delegation mechanisms for such a model. In this paper, we propose a new delegation framework to support the access control associated with the model. Among various delegations, two typical cases and their solution algorithms are presented to indicate the usability of the framework.