Graph-based access control: Difference between revisions

Content deleted Content added
Line 20:
The organization graph is divided into a type and an instance level. On the instance level there are node types for organization units, functional units and agents. The basic structure of an organization is defined using so called ″structural relations″. They define the ″is part of″- relations between functional units and organization units as well as the mapping of agents to functional units. Additionally there are specific relationship types like ″deputyship″ or ″informed_by″. These types can be extended by the modeler. All relationships can be context sensitive through the usage of predicates.
 
TheOn the type level isorganization usedstructures forare thedescribed purposein ofa re-usagemore general manner. It consists of organization unit types, functional unit types and the same relationship types as on the instance level. Types are typical organization structuresType thatdefinitions can be used to create new instances or reuse organization knowledge in case of exceptions (for further reading see <ref name=DISS/> <ref name=EOMAS />).
 
==== Query Language ====