Process View
Details the flow of actions to be executed.
Specurity Aspects
Name
Description
If users are requesting access externally, stricter policies have to be enforced, depending on the requester’s location.
When the panic mode is activated, the user interface will be displayed with reasonable information generated by the EMS that does not reflect the users real information.
Specification Elements
Name
Description
Refers to the entry point of a web application.
Defined to be a shortcut for showing menus entries for all menus of Submachine States.
Specifies navigational access control.
Specifies connection type.
Denotes that a search is done when using a transition.
Refers to a list of elements with the given {itemType} tag from the Content model.
Specify critical areas in which a user needs to reauthenticate themselves.
Prevents navigating to the interface.
Security Aspects
User Zone Concept
If users are requesting access externally, stricter policies have to be enforced, depending on the requester’s location.- Specification Elements:
- IsHome
- IntegratedMenu
- RolesExpression
- NoAccessInMode
- ReAuth
- ItemType
- Search
- Threats:
- Tampering with Data
- Information Disclosure
- Denial of Service
- Elevation of Privileges
Panic Mode
When the panic mode is activated, the user interface will be displayed with reasonable information generated by the EMS that does not reflect the users real information.- Specification Elements:
- NoAccessInMode
- TransmissionType
- Threats:
- Information Disclosure
Specification Elements
IsHome
Refers to the entry point of a web application.- Applies to:
- State
IntegratedMenu
Defined to be a shortcut for showing menus entries for all menus of Submachine States.- Applies to:
- State
RolesExpression
Specifies navigational access control.- Applies to:
- State
TransmissionType
Specifies connection type.- Applies to:
- Connection
Search
Denotes that a search is done when using a transition.- Applies to:
- State
ItemType
Refers to a list of elements with the given {itemType} tag from the Content model.ReAuth
Specify critical areas in which a user needs to reauthenticate themselves.- Applies to:
- State
NoAccessInMode
Prevents navigating to the interface.- Applies to:
- State