Access control for web data: Models and policy languages

被引:0
作者
Universita dell'Insubria, Dipartimento di Scienze della Cultura, Politiche e Informazione, Via Carloni, 78, 22100 Como, Italy [1 ]
不详 [2 ]
机构
[1] Universita dell'Insubria, Dipartimento di Scienze della Cultura, Politiche e Informazione, 22100 Como, Via Carloni
[2] University of Texas at Dallas, Department of Computer Science EC 31, Richardson, TX 75083-0688
来源
Ann Telecommun | 2006年 / 3-4卷 / 245-266期
关键词
Access control; Information access; Internet; Semantic Web; World Wide Web; XML;
D O I
10.1007/bf03219908
中图分类号
学科分类号
摘要
The web has made easily available an enormous amount of information in digital form and has facilitated the exchange of such information. In this environment, access control is a primary concern. The key issue is how to trade-off between maximizing the sharing of information and enforcing a controlled access to web data. In this paper we start by outlining which are the main access control requirements of web data. Then, we review researches carried on in the field, by mainly focusing on XML. Finally, we discuss policy languages for the semantic web, and outline which are the main research directions in this field.
引用
收藏
页码:245 / 266
页数:21
相关论文
共 45 条
[1]  
Antoniou G., Billington G.D., Governatori G., Maher M., Representation results for defeasible logic, ACM Transactions on Computational Logic, 2, (2001)
[2]  
Antoniou G., Van Harmelen F., A semantic primer, MIT Press, (2003)
[3]  
Committee on multilevel data management security, Multilevel Data Management Security, (1983)
[4]  
Bell D., Lapadula L., Secure computer systems: Unified exposition and multics interpretation, ESD-TR-75-306, (1975)
[5]  
Berners-Lee T., Hendler J., Lassila O., The semantic web, Scientific American, (2001)
[6]  
Bertino E., Carminati B., Ferrari E., Thuraisingham B., Gupta A., Selective and authentic third-party distribution of XML documents, IEEE Transactions on Knowledge and Data Engineering (TKDE), 16, 10, pp. 1263-1278, (2004)
[7]  
Bertino E., Ferrari E., Development of multilevel secure database systems, Database and Data Communication Network Systems, (2002)
[8]  
Bertino E., Carminati B., Ferrari E., A temporal key management scheme for broadcasting XML documents, Proc. of the 9th ACM Conference on Computer and Communications Security (CCS'02), (2002)
[9]  
Bertino E., Castano S., Ferrari E., On specifying security policies for web documents with an XML-based language, Proc. of the ACM Symposium on Access Control Models and Technologies (SACMAT'01), (2001)
[10]  
Bertino E., Ferrari E., Secure and selective dissemination of XML documents, ACM Transactions on Information and System Security (TISSEC), 5, 3, pp. 290-331, (2002)