A flexible framework for architecting XML access control enforcement mechanisms

被引:0
|
作者
Luo, B [1 ]
Lee, D [1 ]
Lee, WC [1 ]
Liu, P [1 ]
机构
[1] Penn State Univ, University Pk, PA 16802 USA
来源
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the growing interest in XML security, various access control schemes have been proposed recently. However, little effort has been put forth to facilitate a uniform analysis and comparison of these schemes under the same framework. This paper presents a first attempt toward a flexible framework that can capture the design principles and operations of existing XML access control mechanisms. Under this framework, we observe that most existing XML access control mechanisms share the same design principle with slightly different orderings of underlying building blocks (i.e., data, query, and access control rule). Furthermore, according to the framework, we identify four plausible approaches to implement XML access controls, namely built-in, view-based, pre-processing and post-processing. Finally, we compare the actual performance of different approaches.
引用
收藏
页码:133 / 147
页数:15
相关论文
共 50 条
  • [1] Access Control Framework for XML Document Collections
    Sladic, Goran
    Milosavljevic, Branko
    Konjovic, Zora
    Vidakovic, Milan
    [J]. COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2011, 8 (03) : 591 - 609
  • [2] XML access control models and mechanisms: A survey
    Mirabi, Meghdad
    Ibrahim, Hamidah
    Udzir, Nur Izura
    Mamat, Ali
    [J]. International Review on Computers and Software, 2012, 7 (04) : 1518 - 1527
  • [3] A framework for security assurance of access control enforcement code
    Pavlich-Mariscal, Jaime A.
    Demurjian, Steven A.
    Michel, Laurent D.
    [J]. COMPUTERS & SECURITY, 2010, 29 (07) : 770 - 784
  • [4] Flexible access control framework for MARC records
    Sladic, Goran
    Milosavljevic, Branko
    Surla, Dusan
    Konjovic, Zora
    [J]. ELECTRONIC LIBRARY, 2012, 30 (05): : 623 - 652
  • [5] A Framework of Composable Access Control Definition, Enforcement and Assurance.
    Pavlich-Mariscal, Jaime A.
    Demurjian, Steven A.
    Michel, Laurent D.
    [J]. SCCC 2008: INTERNATIONAL CONFERENCE OF THE CHILEAN COMPUTER SCIENCE SOCIETY, PROCEEDINGS, 2008, : 13 - +
  • [6] A Rigorous Framework for Specification, Analysis and Enforcement of Access Control Policies
    Margheri, Andrea
    Masi, Massimiliano
    Pugliese, Rosario
    Tiezzi, Francesco
    [J]. IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 2019, 45 (01) : 2 - 33
  • [7] Portable and flexible document access control mechanisms
    Atallah, M
    Bykova, M
    [J]. COMPUTER SECURITY ESORICS 2004, PROCEEDINGS, 2004, 3193 : 193 - 208
  • [8] An efficient yet secure XML access control enforcement by safe and correct query modification
    Byun, Changwoo
    Park, Seog
    [J]. DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2006, 4080 : 276 - 285
  • [9] Generating XACML Enforcement Policies for Role-Based Access Control of XML Documents
    Algarin, Alberto De la Rosa
    Ziminski, Timoteus B.
    Demurjian, Steven A.
    Sanchez, Yaira K. Rivera
    Kuykendall, Robert
    [J]. WEB INFORMATION SYSTEMS AND TECHNOLOGIES, WEBIST 2013, 2014, 189 : 21 - 36
  • [10] CEBAC: A Decentralized Cooperation Enforcement Based Access Control Framework in MANETs
    Saremi, Fatemeh
    Mashayekhi, Hoda
    Movaghar, Ali
    Jalili, Rasool
    [J]. ADVANCES IN COMPUTER SCIENCE AND ENGINEERING, 2008, 6 : 427 - 434