@InProceedings{ lodderstedt.ea:secureuml:2002, abstract = {We present a modeling language for the model-driven development of secure, distributed systems based on the Unified Modeling Language (UML). Our approach is based on role-based access control with additional support for specifying authorization constraints. We show how UML can be used to specify information related to access controlin the overall design of an application and how this information can be used to automatically generate complete access control infrastructures. Our approach can be used to improve productivity during the development of secure distributed systems and the quality of the resulting systems.}, author = {Torsten Lodderstedt and David Basin and J\"urgen Doser}, booktitle = {The unified modeling language: model engineering, concepts, and tools; 5th international}, copyrighturl = {http://www.springer.de/cgi/svcat/search_book.pl?isbn=3-540-44254-5} , editor = {Jean-Marc Jezequel and Heinrich Hussmann and Stephen Cook}, language = {USenglish}, pages = {426--441}, pdf = {papers/2002/0_secuml_uml2002.pdf}, publisher = {Springer}, title = {{SecureUML}: A {UML}-Based Modeling Language for Model-Driven Security}, volume = 2460, year = 2002 }