Back to top

Bachelor's Thesis Kilian Dresse

Last modified Jun 3, 2022

Designing a Data Access Control Concept for the Knowledge4Retail Platform

Knowledge4Retail (K4R) is an interdisciplinary research project set out to digitalize the stationary retail business. A number of different partners are collaborating to optimize two key factors of retail. First, the optimization of product placement inside the store to accelerate turnover and create a more personal shopping experience. Secondly, the process of optimizing and automating store internal logistics, from the arrival of new deliveries to the refilling of shelves. To achieve these goals various use cases were created, which are developed by the partners of the project.

The platform operates around a digital twin, which is a digital replica of a physical object and in this case a retail store. This dynamic database needs to be accessible by the use cases and components to fulfill their objective. The multitude of components accessing the diverse resources has to be controlled to assure information confidentiality and integrity. To enhance the platform’s security, data access control needs to be implemented.

This research analyzes the data flows of the various components of the system to create a foundation for a data access control concept for the K4R platform. The research’s insights are largely based on expert interviews, which were conducted to analyze the exact definitions of every component of the system as well as what the individual components of the project need to access. Furthermore, the focus lies on how employees of the supermarket should be able to access the digital twin’s information. This research uses role-based access control to define access roles for each component in the system based on their activity and what they should be allowed to access.

In the process, a UML component diagram is created to resemble the platform’s data flows as well as a UML class diagram to analyze the different resources of the digital twin. Com- bining the results from the diagrams, the roles are established, creating the desired elements of a data access control concept. The proposed elements build the foundation of a future im- plementation for access control on the K4R platform. Through this, a potential methodology for the creation of a role-based access control system for a complex interdisciplinary platform such as K4R is established.

In addition, the expert interviews are used to explore different hosting styles for the K4R system as well as the possibility of external parties accessing information of a supermarket’s K4R instance.

Research Questions

  1. How to model data flows within the Knowledge4Retail platform for associated organizations and roles?
  2. What are requirements of partner organizations for a Knowledge4Retail data access control concept?
  3. How to design a data access control concept for the Knowledge4Retail platform?

Research Design

  • Literature Review to define data flows, organizations and roles existing in the Knowledge4Retail platform

  • Semi-structured interviews to determine the needs and nonessentials for partners/users of the platform
    • Develop requirements in the access control concept for roles and organization
    • Revise component architecture to integrate third parties such as suppliers
    • Create a list of organizations and roles
    • Feedback interview round to validate the adapted architecture
  • Combine literature review with the results from the requirement analysis to form a data access control concept for the Knowledge4Retail platform

Files and Subpages

Name Type Size Last Modification Last Editor
DresseKilianFinalPresentation.pdf 1,70 MB 03.06.2022
DresseKilianFinalPresentation.pptx 11,21 MB 03.06.2022
DresseKilianThesis.pdf 1,24 MB 03.06.2022
KickOff_DresseKilian.pdf 1,27 MB 03.06.2022