Title :
Towards a Fine-Grained Access Control Model and Mechanisms for Semantic Databases
Author :
Franzoni, S. ; Mazzoleni, P. ; Valtolina, Stefano ; Bertino, Elisa
Author_Institution :
Univ. degli Studi di Milano, Milan
Abstract :
A growing number of domains are adopting semantic models as a centralized gateway to heterogeneous data sources, or directly for modeling and managing relevant information. In such contexts, it is crucial to grant access to the semantic model and its data only to the authorized users. In this paper, we present a fine-grained access control model specifically tailored to semantic models. One of the relevant features of the model is the granularity of the resources that can be protected. Access control can be enforced at the level of both the model´s concepts and the concepts´ instances by means of a query rewriting strategy. The proposed model has been implemented adopting the XACML standard and the SeRQL query language; services exposed by the implementation can be used to trans- paretly integrate authorization into existing systems.
Keywords :
XML; authorisation; distributed databases; query languages; rewriting systems; SeRQL query language; XACML standard; access control model; authorization; authorized users; heterogeneous data sources; query rewriting strategy; relevant information; semantic databases; semantic models; Access control; Authorization; Context modeling; Data security; Information management; Ontologies; Protection; Relational databases; Resource description framework; Web sites;
Conference_Titel :
Web Services, 2007. ICWS 2007. IEEE International Conference on
Conference_Location :
Salt Lake City, UT
Print_ISBN :
0-7695-2924-0
DOI :
10.1109/ICWS.2007.176