Towards Modeling Role-Based Pageflow Definitions within Web Applications.
Ernst Oberortner, Martin Vasko, Schahram Dustdar · 2008
Abstract. Model-Driven Software Development (MDSD) can be used to enhance developing and maintaining web applications. Furthermore, security plays a crucial role in the area of web applications. A seamless integration of access control and modeling web applications becomes important. This work introduces model-driven integration of security concerns into the development life cycle of web applications. In this paper, a static design model is introduced which enables the assignment of Role-Based Access Control (RBAC) to the pageflow at design time. The approach is demonstrated by a generated web application with defined security constraints which can be deployed on the Apache Tomcat web server. 1