Controlling Access to RDF Data using Abstract Models

نویسندگان

  • Vassilis Papakonstantinou
  • Dimitris Plexousakis
  • Irini Fundulaki
  • Maria Papadopouli
  • Angelos Bilas
چکیده

The number of applications that publish and exchange possibly sensitive RDF data continuously increases in a large number of domains ranging from bioinformatics to e-government. In light of the sensitive nature of the available information, the issue of securing RDF content and ensuring the selective exposure of information to different classes of users is becoming all the more important. This thesis studies the problem of providing secure access to RDF data taking into account RDFS inference and propagation of access labels along the RDFS class and property hierarchies. The majority of the state of the art approaches for RDF access control use annotation models where each triple is assigned a concrete value as access label that determines whether the triple is accessible or not. In these models the computation of the access label of a triple (via implication or propagation) is done once, in a fixed manner according to predefined semantics. Hence, when the initial assignment of the access labels to triples or the semantics on how the implied labels are computed change, then the labels of all the implied triples in the dataset must be recomputed. This also holds when data, or even the way that labels are assigned to triples change. To address those shortcomings, we propose the use of abstract access control models, in which the access label of a triple is not a concrete value, but an algebraic expression that encodes exactly how the access label of an implied or propagated triple was computed, that is which triples were involved in the implication or propagation thereof. This way, we can easily determine the triples that are affected by each change in the dataset or in the authorizations, and act accordingly, by recomputing only the affected labels, rather than the labels of entire dataset. The flexibility of the proposed model to handle different applications with diversified needs, simplifies the maintenance of an access control-enhanced dataset. The abstract approach generalizes in a straightforward manner the existing RDF access control models that consider RDFS semantics since they can be considered as specific concretizations of the general model. More specifically, the model can be used in situations that consider different and/or dynamic datasets, authorizations, application requirements and access control semantics.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Abstract Access Control Model for Dynamic RDF Datasets

Access Control Model for Dynamic RDF Datasets Giorgos Flouris, Irini Fundulaki, and Vassilis Papakonstantinou 1 FORTH-ICS, Greece 2 CWI, The Netherlands 3 University of Crete, Greece {fgeo,fundul,papv}@ics.forth.gr Abstract. Given the increasing amount of sensitive RDF data availGiven the increasing amount of sensitive RDF data available on the Web, it becomes increasingly critical to guarantee...

متن کامل

Securing Access to Sensitive RDF Data

Given the increasing amount of sensitive RDF data available on the Web, it becomes critical to guarantee secure access to this content. The problem becomes even more challenging in the presence of RDFS inference, where inferred knowledge needs to be protected in the same way as explicit one. State of the art models for RDF access control annotate triples with concrete values that denote whether...

متن کامل

Controlling Access to RDF Graphs

One of the current barriers towards realizing the huge potential of Future Internet is the protection of sensitive information, i.e., the ability to selectively expose (or hide) information to (from) users depending on their access privileges. Given that RDF has established itself as the de facto standard for data representation over the Web, our work focuses on controlling access to RDF data. ...

متن کامل

Applying DAC Principles to the RDF Graph Data Model

In this paper we examine how Discretionary Access Control principles, that have been successfully applied to relational and XML data, can be applied to the Resource Description Framework (RDF) graph data model. The objective being to provide a baseline for the specification of a general authorisation framework for the RDF data model. Towards this end we provide a summary of access control requi...

متن کامل

Specifying multimedia access control using RDF

The Synchronized Multimedia Integration Language (SMIL) [Aya01] is an W3C [W3C03] specification for authoring multimedia documents. Although SMIL has XML like syntactic constructs, unlike XML, SMIL compositions have an intended semantics stemming from intuitive notions of playing out many media streams relative to each other. Although there are many excellent models for XML access control [DdVP...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2013