Secure XML views

被引:0
|
作者
Stoica, A [1 ]
Farkas, C [1 ]
机构
[1] Univ S Carolina, Dept Comp Sci & Engn, Columbia, SC 29208 USA
关键词
multilevel XML security; view-based access control; secure partial views; semantic correctness; structural cover stories; semantic conflict;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently more and more data is stored in XML format. While XML increases flexibility, it also raises new security challenges such as access control for multilevel security. This paper considers the problem of generating secure and free of semantic conflicts partial views from XML documents. In the context of DTD-based multilevel security classification, we develop techniques to generate single-level DTDs for partial views. For this purpose, we define and manipulate two graphs, a Minimum Semantic Conflict Graph (MSCG) and a Multi-Plane DTD Graph (MPG). MSCG contains all semantic relationships among the XML tags that must be preserved within any partial view. Intuitively, MSCG ensures the generated views will be free of semantic conflict. MPG captures the structural relationships among tags and their security classifications. We show that secure views can be generated from the first reduced form MPG(0) (i.e., an MPG that does not have edges outside the targeted security space), by ignoring unauthorized security planes. We define a set of procedures to restructure a general MPG into an MPG(0) according to the corresponding MSCG.
引用
收藏
页码:133 / 146
页数:14
相关论文
共 50 条
  • [1] Updating XML views and querying XML views with update syntax
    Cong, Gao
    Li, Yingxin
    [J]. INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2010, 5 (02) : 118 - 126
  • [2] Updatable XML views
    Kozankiewicz, H
    Leszczylowski, J
    Subieta, K
    [J]. ADVANCES IN DATABASES AND INFORMATION SYSTEMS, PROCEEDINGS, 2003, 2798 : 385 - 399
  • [3] Secure XML Labeling for Efficient XML Content Dissemination
    Sankari, S.
    Bose, S.
    [J]. 2014 SIXTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING, 2014, : 150 - 156
  • [4] On the efficiency of secure XML broadcasting
    Ko, Hye-Kyeong
    Kim, Min-Jecing
    Lee, SangKeun
    [J]. INFORMATION SCIENCES, 2007, 177 (24) : 5505 - 5521
  • [5] A browser for specifying XML views
    Baril, X
    Bellahsène, Z
    [J]. OOIS 2001: 7TH INTERNATIONAL CONFERENCE ON OBJECT-ORIENTED INFORMATION SYSTEMS, PROCEEDINGS, 2001, : 164 - 174
  • [6] XML views for electronic editions
    Iacob, Ionut E.
    Dekhtyar, Alex
    [J]. OPENING INFORMATION HORIZONS, 2006, : 139 - +
  • [7] XML views: Part 1
    Rajugan, R
    Chang, E
    Dillon, TS
    Feng, L
    [J]. DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2003, 2736 : 148 - 159
  • [8] Generalized XML security views
    Kuper, Gabriel
    Massacci, Fabio
    Rassadko, Nataliya
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2009, 8 (03) : 173 - 203
  • [9] Designing valid XML views
    Chen, YB
    Ling, TW
    Lee, ML
    [J]. CONCEPTUAL MODELING - ER 2002, 2002, 2503 : 463 - 477
  • [10] Towards secure XML federations
    Wang, LY
    Wijesekera, D
    Jajodia, S
    [J]. RESEARCH DIRECTIONS IN DATA AND APPLICATIONS SECURITY, 2003, 128 : 117 - 131