DocumentCode :
20610
Title :
Authorization Control for a Semantic Data Repository through an Inference Policy Engine
Author :
Alamri, Atif ; Bertok, Peter ; Thom, James A.
Author_Institution :
Sch. of Comput. Sci. & Inf. Technol., RMIT Univ., Melbourne, VIC, Australia
Volume :
10
Issue :
6
fYear :
2013
fDate :
Nov.-Dec. 2013
Firstpage :
328
Lastpage :
340
Abstract :
Semantic models help in achieving semantic interoperability among sources of data and applications. The necessity to efficiently manage these types of objects has increased the number of specialized repositories, usually referred to as semantic databases. An increasing number of project initiatives have been recorded that choose to formalize application knowledge using ontologies and semantic data representation. Due to the various sensitivities of data, suitable access control mechanisms pertaining to the semantic repository should be put in place to ensure that only authorized users can obtain access to the information in its entirety. In fact, deciding what can be made available to the user without revealing confidential information is made even more difficult because the user may be able to apply logic and reasoning to infer confidential information from the knowledge being provided. In this paper, we design an authorization security model enforced on a semantic model´s entities (concepts) and also propagate on their individuals in the OWL database through an inference policy engine. We provide TBox access control for the construction of a TBox family and propagate this based on the construction of concept taxonomies. We also provide ABox label-based access control for facts in the domain knowledge and report experiments to evaluate the effects of access control on reasoning and modularization.
Keywords :
authorisation; inference mechanisms; knowledge representation languages; semantic Web; ABox label-based access control; OWL database; TBox access control; authorization control; authorization security model; concept taxonomy construction; inference policy engine; modularization; reasoning; semantic data repository; semantic model entities; Access control; Authorization; Data storage; Semantic Web; Authorization and access control; OWL; RDF; Semantic Web; semantic repositories;
fLanguage :
English
Journal_Title :
Dependable and Secure Computing, IEEE Transactions on
Publisher :
ieee
ISSN :
1545-5971
Type :
jour
DOI :
10.1109/TDSC.2013.20
Filename :
6502160
Link To Document :
بازگشت