TBAC: A Fine-Grained Topic-Based Access Control Model for Text Data

被引:0
|
作者
Ma, Ke [1 ]
Yang, Geng [1 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Comp Sci, Nanjing 210023, Peoples R China
基金
中国国家自然科学基金;
关键词
Permission; Authorization; Security; Databases; Data models; PD control; Computational modeling; Fine-grained access control; topic-based access control; Index Terms; content-driven; database security;
D O I
10.1109/TSC.2022.3190385
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Insufficient authorization and overauthorization are two main problems to be solved in access control systems. If the authorization is too strict, users might not be able to access data that should be accessible. If the authorization is too lax, users might obtain too many access rights, which may cause considerable risks. Finer-grained access control models are needed to solve these problems. In this paper, aiming at insufficient authorization in text databases, we propose the topic-based access control (TBAC) model and two implementation methods of the model (subject-to-object topic-based access control method PD-TBAC and object-to-subject topic-based access control method FD-TBAC). In the TBAC model, the access control decision for each user against each file is totally content-driven. We use the latent Dirichlet allocation (LDA) algorithm to extract topics from each paragraph in each file, and these topics are used to determine users' access rights. Experimental results show that the access control granularity of TBAC is more than 4 times that of the existing content-based access control model.
引用
收藏
页码:2215 / 2228
页数:14
相关论文
共 50 条
  • [1] A fine-grained access control model for relational databases
    Shi, Jie
    Zhu, Hong
    JOURNAL OF ZHEJIANG UNIVERSITY-SCIENCE C-COMPUTERS & ELECTRONICS, 2010, 11 (08): : 575 - 586
  • [3] A fine-grained access control model for relational databases
    Jie Shi
    Hong Zhu
    Journal of Zhejiang University SCIENCE C, 2010, 11 : 575 - 586
  • [4] Model-based characterization of fine-grained access control authorization for SQL queries
    Hoang Nguyen Phuoc Bao
    Clavel, Manuel
    JOURNAL OF OBJECT TECHNOLOGY, 2020, 19 (03): : 1 - 13
  • [5] A Fine-Grained Access Control Mechanism Based on Search Trees
    Zou, Xianxia
    Zheng, Cenyu
    Lin, Haodong
    Du, Like
    Xu, Weiwu
    He, Chong
    2023 IEEE 22ND INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, BIGDATASE, CSE, EUC, ISCI 2023, 2024, : 1614 - 1620
  • [6] A Fine-grained Access Control Model for Knowledge Graphs
    Valzelli, Marco
    Maurino, Andrea
    Palmonari, Matteo
    PROCEEDINGS OF THE 17TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (SECRYPT), VOL 1, 2020, : 595 - 601
  • [7] A Middleware to Allow Fine-Grained Access Control of Twitter Applications
    Buccafurri, Francesco
    Lax, Gianluca
    Nicolazzo, Serena
    Nocera, Antonino
    MOBILE, SECURE, AND PROGRAMMABLE NETWORKING (MSPN 2016), 2016, 10026 : 168 - 182
  • [8] Fine-Grained Access Control for Microservices
    Nehme, Antonio
    Jesus, Vitor
    Mahbub, Khaled
    Abdallah, Ali
    FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 285 - 300
  • [9] Key-Policy Attribute-Based Encryption With Switchable Attributes for Fine-Grained Access Control of Encrypted Data
    Luo, Fucai
    Wang, Haiyan
    Yan, Xingfu
    Wu, Jiahui
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 7245 - 7258
  • [10] Secure Fine-Grained Data Access Control Over Multiple Cloud Server Based Healthcare Applications
    Deshmukh, Nilam Manikrao
    Kumar, Santosh
    Shirsath, Rakesh
    2019 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2019,