On Usage Control in Relational Database Management Systems Obligations and Their Enforcement in Joining Datasets

被引:0
|
作者
Bargh, Mortaza S. [1 ]
Vink, Marco [1 ]
Choenni, Sunil [1 ,2 ]
机构
[1] Minist Secur & Justice, Res & Documentat Ctr, The Hague, Netherlands
[2] Rotterdam Univ Appl Sci, Creating 010, Rotterdam, Netherlands
关键词
Access Control; Inner Join; Obligations; Privacy; Usage Control; PRIVACY;
D O I
10.5220/0006209801900201
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
When datasets are collected and accessed legitimately, they must still be used appropriately according to policies, guidelines, rules, laws, and/or the (current) preferences of data subjects. Any inconsistency between the data collection and data usage processes can conflict with many principles of privacy like the transparency principle, no secondary use principle, or intended purpose usage principle. In this contribution we show how the usage control for the inner join operation in vertically separated relational datasets can be characterized as pre and post obligations of the Usage Control (UCON) model. This type of obligations is defined not only by the state of the UCON object (i.e., a dataset) itself, but also with respect to the state of another dataset. Such dependency on two datasets/objects provides a new insight in UCON obligation constructs when applied to the join operation. We describe also a mechanism to realize the identified obligation in a database management system and present an example realization of the proposed mechanism. Furthermore, we enlist a number of methods to determine whether two given datasets can be joined.
引用
收藏
页码:190 / 201
页数:12
相关论文
共 50 条
  • [1] On Using Obligations for Usage Control in Joining of Datasets
    Bargh, Mortaza S.
    Vink, Marco
    Choenni, Sunil
    INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, 867 : 173 - 196
  • [2] Enforcing Obligations within Relational Database Management Systems
    Colombo, Pietro
    Ferrari, Elena
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2014, 11 (04) : 318 - 331
  • [3] Enforcement of Purpose Based Access Control within Relational Database Management Systems
    Colombo, Pietro
    Ferrari, Elena
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2014, 26 (11) : 2703 - 2716
  • [4] Efficient Enforcement of Action-Aware Purpose-Based Access Control within Relational Database Management Systems
    Colombo, Pietro
    Ferrari, Elena
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2015, 27 (08) : 2134 - 2147
  • [5] Efficient Enforcement of Action-aware Purpose-based Access Control within Relational Database Management Systems
    Colombo, Pietro
    Ferrari, Elena
    2016 32ND IEEE INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE), 2016, : 1516 - 1517
  • [6] Cryptography and relational database management systems
    He, JM
    Wang, M
    2001 INTERNATIONAL DATABASE ENGINEERING & APPLICATIONS SYMPOSIUM, PROCEEDINGS, 2001, : 273 - 284
  • [7] Exploiting If This Then That and Usage Control obligations for Smart Home security and management
    Giorgi, Giacomo
    La Marra, Antonio
    Martinelli, Fabio
    Mori, Paolo
    Rizos, Athanasios
    Saracino, Andrea
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (16):
  • [8] DEVELOPMENT OF A RELATIONAL DATABASE FOR LEARNING MANAGEMENT SYSTEMS
    Deperlioglu, Omer
    Sarpkaya, Yilmaz
    Ergun, Ertugrul
    TURKISH ONLINE JOURNAL OF EDUCATIONAL TECHNOLOGY, 2011, 10 (04): : 107 - 120
  • [9] AN IMPLEMENTATION OF BITEMPORAL RELATIONAL DATABASE MANAGEMENT SYSTEMS
    Atay, Canon Eren
    PAMUKKALE UNIVERSITY JOURNAL OF ENGINEERING SCIENCES-PAMUKKALE UNIVERSITESI MUHENDISLIK BILIMLERI DERGISI, 2014, 20 (02): : 54 - 62
  • [10] BUFFER MANAGEMENT IN RELATIONAL DATABASE-SYSTEMS
    SACCO, GM
    SCHKOLNICK, M
    ACM TRANSACTIONS ON DATABASE SYSTEMS, 1986, 11 (04): : 473 - 498