Title :
Using Semantic Web Technologies for RBAC in Project-Oriented Environments
Author :
Raje, Satyajeet ; Davuluri, Chowdary ; Freitas, Michael ; Ramnath, Rajiv ; Ramanathan, Jay
Author_Institution :
Dept. of Comput. Sci. & Eng., Ohio State Univ., Columbus, OH, USA
Abstract :
Project-oriented environments are key to supporting the co-operative work essential to collaborative research activities. However, personnel and resources in project-oriented environments are typically diverse and heterogeneous as they come from both internal as well as external domains. Providing a robust data security system in such an environment becomes critical. The ideal access control architecture should manage access to resources not only based on roles but also based on the specific nature of each resource and its involvement within the project. Traditional role-based access control (RBAC) does not consider the context which often modifies the responsibility given to resources. We propose using an enhanced role-based access control (RBAC) mechanism to address this problem. Specifically, we discuss the implementation of RBAC using ontological methods borrowed from semantic web technology. We used an ontology-based approach for specification and implementation of the RBAC in a collaborative system used within a research group to manage proteomics data, where the access control policy depends on how the project team hierarchy is structured. We describe the design and implementation of this system in this paper. We also provide a preliminary evaluation of the implementation. We find there are several advantages to using ontological methods to implement RBAC. The most significant of these is standardization, which is essential for portability. Also key is modifiability as the actual roles are defined by the ontology itself. Since data access is provided through URI handling moving to a federated system is made easier. This becomes very important in collaborative environments as the data in question is invariably distributed.
Keywords :
authorisation; semantic Web; RBAC; URI handling; access control architecture; access control policy; collaborative research activity; collaborative system; cooperative work; data access; modifiability; ontological method; portability; project oriented environments; project team hierarchy; proteomics data; robust data security system; role based access control; semantic Web technology; standardization; Access control; Collaboration; OWL; Ontologies; Permission; Proteomics; Access Control; Ontology; RBAC; Semantic Web;
Conference_Titel :
Computer Software and Applications Conference (COMPSAC), 2012 IEEE 36th Annual
Conference_Location :
Izmir
Print_ISBN :
978-1-4673-1990-4
Electronic_ISBN :
0730-3157
DOI :
10.1109/COMPSAC.2012.71