PLM-oriented multi-granular access control model

Jun Hao Geng, Zhen Ming Zhang, Xi Tian Tian, Ding Hua Zhang

Research output: Contribution to journalArticlepeer-review

Abstract

To meet the access control requirements of Product Lifecycle Management (PLM) system in complicated application circumstances, PLM-oriented Multi-granular Access Control (PLM MAC) model was proposed based on Role-Based Access Control (RBAC) standard. Access subject composition granularities and access object hierarchical granularities from RBAC model were improved in this model; access object lifecycle granularities and permission assignment control granularities were introduced into PLM MAC model. While the control scope of RBAC model was extended in PLM MAC, it reduced the probability of authorization mistakes and the quantity of repeated public authorization; it implemented the precise control for various access objects in all levels and all lifecycle states; and it resolved the permission coherence control induced by temporary authorization, project authorization and delegation authorization. At last, a formal description of PLM MAC model as well as an algorithm of permission consistency control were presented, and an application example was provided to verify the effectiveness of PLM MAC method.

Original languageEnglish
Pages (from-to)2119-2128+2133
JournalJisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS
Volume14
Issue number11
StatePublished - Nov 2008

Keywords

  • Access control
  • Granularity
  • Product lifecycle management
  • Role-based access control

Fingerprint

Dive into the research topics of 'PLM-oriented multi-granular access control model'. Together they form a unique fingerprint.

Cite this