Secure Interoperation of Heterogeneous Systems: a Mediator-based Approach
نویسندگان
چکیده
This paper addresses the problem of ensuring protection in the interoperation of heterogeneous data sources. We present a system that allows data sources enforcing mandatory multilevel policies to interoperate and make their data available to external applications still maintaining autonomy and security. Sources can be het-erogenous with respect to both the data model and the security lattices governing access control. Our approach is based on the use of wrappers and a mediator. A wrapper associated with each source provides a uniform data interface and mapping between the source's lattice and other lattices. The mediator processes global access requests by interfacing applications and data sources. We show how the relationships between the security lattices are stated and controlled for inconsistencies, and how global queries are processed by the mediator and by the local wrappers for both data retrieval and enforcement of security constraints. We also describe the architecture and operation of the system, and describe the tasks of the diierent components.
منابع مشابه
Secure Interoperation in Heterogeneous Systems based on Colored Petri Nets
In a multi-domains application environment, where distributed multiple organizations interoperate with each other, the local access control policies should correspondingly be integrated in order to allow users of one organization to interact with other domains. One of the key challenges of integrating policies is conflict detection and resolution while preserving policy consistency. This paper ...
متن کاملTrust-Based Constraint-Secure Interoperation for Dynamic Mediator-Free Collaboration
By collaboration, domains share resources effectively. To maintain security properties of individual domains during collaboration is a key issue. When domains employing heterogeneous RBAC policies collaborate via crossdomain role-role mappings, their locally-defined separation of duty constraints face the risk of breaching. We present the requirements for constraint-secure interoperation, prohi...
متن کاملPrivacy-preserving Semantic Interoperation of Heterogeneous Databases
Two major challenges to enabling secure interoperation among web-information sources are resolving semantic heterogeneity across websites and maintaining the privacy of the data and metadata of organizations owning the websites. In this paper, we propose SACE, a novel, implemented middleware toolkit that enables privacy-preserving secure semantic access control and allows queries to be answered...
متن کاملSecurity Policy Coordination for Heterogeneous Information Systems
Coordinating security policies in information enclaves is challenging due to their heterogeneity and autonomy. Administrators must reconcile the semantic diversity of data and security models before negotiating secure interoperation. This paper proposes an architecture that uses mediators and a primitive ticket-based authorization model to manage disparate policies in information enclaves. The ...
متن کاملModeling Database Federations in Terms of Evolving Agents Sachsen-anhalt under Fkz: 1987a/0025 (federating Heterogeneous Database Systems and Local Data Management Components for Global Integrity Maintenance)
For advanced information systems, the interoperation between heterogeneous database systems which autonomously manage their existing, independently developed databases is a fundamental issue. Thus, organization's data is virtually represented at the global level in a uniform way and transparent access to distributed and heterogeneous data sources becomes possible. In this paper, we present a fo...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 1998