• DocumentCode
    20610
  • Title

    Authorization Control for a Semantic Data Repository through an Inference Policy Engine

  • Author

    Alamri, Atif ; Bertok, Peter ; Thom, James A.

  • Author_Institution
    Sch. of Comput. Sci. & Inf. Technol., RMIT Univ., Melbourne, VIC, Australia
  • Volume
    10
  • Issue
    6
  • fYear
    2013
  • fDate
    Nov.-Dec. 2013
  • Firstpage
    328
  • Lastpage
    340
  • Abstract
    Semantic models help in achieving semantic interoperability among sources of data and applications. The necessity to efficiently manage these types of objects has increased the number of specialized repositories, usually referred to as semantic databases. An increasing number of project initiatives have been recorded that choose to formalize application knowledge using ontologies and semantic data representation. Due to the various sensitivities of data, suitable access control mechanisms pertaining to the semantic repository should be put in place to ensure that only authorized users can obtain access to the information in its entirety. In fact, deciding what can be made available to the user without revealing confidential information is made even more difficult because the user may be able to apply logic and reasoning to infer confidential information from the knowledge being provided. In this paper, we design an authorization security model enforced on a semantic model´s entities (concepts) and also propagate on their individuals in the OWL database through an inference policy engine. We provide TBox access control for the construction of a TBox family and propagate this based on the construction of concept taxonomies. We also provide ABox label-based access control for facts in the domain knowledge and report experiments to evaluate the effects of access control on reasoning and modularization.
  • Keywords
    authorisation; inference mechanisms; knowledge representation languages; semantic Web; ABox label-based access control; OWL database; TBox access control; authorization control; authorization security model; concept taxonomy construction; inference policy engine; modularization; reasoning; semantic data repository; semantic model entities; Access control; Authorization; Data storage; Semantic Web; Authorization and access control; OWL; RDF; Semantic Web; semantic repositories;
  • fLanguage
    English
  • Journal_Title
    Dependable and Secure Computing, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1545-5971
  • Type

    jour

  • DOI
    10.1109/TDSC.2013.20
  • Filename
    6502160