DocumentCode
20610
Title
Authorization Control for a Semantic Data Repository through an Inference Policy Engine
Author
Alamri, Atif ; Bertok, Peter ; Thom, James A.
Author_Institution
Sch. of Comput. Sci. & Inf. Technol., RMIT Univ., Melbourne, VIC, Australia
Volume
10
Issue
6
fYear
2013
fDate
Nov.-Dec. 2013
Firstpage
328
Lastpage
340
Abstract
Semantic models help in achieving semantic interoperability among sources of data and applications. The necessity to efficiently manage these types of objects has increased the number of specialized repositories, usually referred to as semantic databases. An increasing number of project initiatives have been recorded that choose to formalize application knowledge using ontologies and semantic data representation. Due to the various sensitivities of data, suitable access control mechanisms pertaining to the semantic repository should be put in place to ensure that only authorized users can obtain access to the information in its entirety. In fact, deciding what can be made available to the user without revealing confidential information is made even more difficult because the user may be able to apply logic and reasoning to infer confidential information from the knowledge being provided. In this paper, we design an authorization security model enforced on a semantic model´s entities (concepts) and also propagate on their individuals in the OWL database through an inference policy engine. We provide TBox access control for the construction of a TBox family and propagate this based on the construction of concept taxonomies. We also provide ABox label-based access control for facts in the domain knowledge and report experiments to evaluate the effects of access control on reasoning and modularization.
Keywords
authorisation; inference mechanisms; knowledge representation languages; semantic Web; ABox label-based access control; OWL database; TBox access control; authorization control; authorization security model; concept taxonomy construction; inference policy engine; modularization; reasoning; semantic data repository; semantic model entities; Access control; Authorization; Data storage; Semantic Web; Authorization and access control; OWL; RDF; Semantic Web; semantic repositories;
fLanguage
English
Journal_Title
Dependable and Secure Computing, IEEE Transactions on
Publisher
ieee
ISSN
1545-5971
Type
jour
DOI
10.1109/TDSC.2013.20
Filename
6502160
Link To Document