TBAC: A Fine-Grained Topic-Based Access Control Model for Text Data

被引:0
作者
Ma, Ke [1 ]
Yang, Geng [1 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Comp Sci, Nanjing 210023, Peoples R China
基金
中国国家自然科学基金;
关键词
Permission; Authorization; Security; Databases; Data models; PD control; Computational modeling; Fine-grained access control; topic-based access control; Index Terms; content-driven; database security;
D O I
10.1109/TSC.2022.3190385
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Insufficient authorization and overauthorization are two main problems to be solved in access control systems. If the authorization is too strict, users might not be able to access data that should be accessible. If the authorization is too lax, users might obtain too many access rights, which may cause considerable risks. Finer-grained access control models are needed to solve these problems. In this paper, aiming at insufficient authorization in text databases, we propose the topic-based access control (TBAC) model and two implementation methods of the model (subject-to-object topic-based access control method PD-TBAC and object-to-subject topic-based access control method FD-TBAC). In the TBAC model, the access control decision for each user against each file is totally content-driven. We use the latent Dirichlet allocation (LDA) algorithm to extract topics from each paragraph in each file, and these topics are used to determine users' access rights. Experimental results show that the access control granularity of TBAC is more than 4 times that of the existing content-based access control model.
引用
收藏
页码:2215 / 2228
页数:14
相关论文
共 50 条
[21]   Fine-Grained Access Control Model for Body Sensor Networks Based on User Trust Degree [J].
Xu, Guangxia ;
Ren, Lingling ;
Song, Yangyang ;
Xiao, Yunpeng .
2013 INTERNATIONAL CONFERENCE ON SENSOR NETWORK SECURITY TECHNOLOGY AND PRIVACY COMMUNICATION SYSTEM (SNS & PCS), 2013, :18-21
[22]   FGAC-NDN: Fine-Grained Access Control for Named Data Networks [J].
Tseng, Yi-Fan ;
Fan, Chun-, I ;
Wu, Chin-Yu .
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2019, 16 (01) :143-152
[23]   Toward Achieving Fine-Grained Access Control of Data in Connected and Autonomous Vehicles [J].
Cui, Jie ;
Chen, Xuelian ;
Zhang, Jing ;
Zhang, Qingyang ;
Zhong, Hong .
IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (10) :7925-7937
[24]   SparkAC: Fine-Grained Access Control in Spark for Secure Data Sharing and Analytics [J].
Xue, Tao ;
Wen, Yu ;
Luo, Bo ;
Li, Gang ;
Li, Yingjiu ;
Zhang, Boyang ;
Zheng, Yang ;
Hu, Yanfei ;
Meng, Dan .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) :1104-1123
[25]   Fine-Grained Spatial Access Control in Spatial Database [J].
Chen Zhen ;
Chen Rongguo ;
Xie Jiong .
ADVANCED TECHNOLOGY IN TEACHING - PROCEEDINGS OF THE 2009 3RD INTERNATIONAL CONFERENCE ON TEACHING AND COMPUTATIONAL SCIENCE (WTCS 2009), VOL 2: EDUCATION, PSYCHOLOGY AND COMPUTER SCIENCE, 2012, 117 :823-830
[26]   Fine-Grained Access Control for Digital Image Systems [J].
Chen, Yi-Hui ;
Lu, Eric Jui-Lin ;
Chen, Ping-Jung .
2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE, ELECTRONICS AND ELECTRICAL ENGINEERING (ISEEE), VOLS 1-3, 2014, :685-+
[27]   Achieving fine-grained access control in virtual organizations [J].
Zhang, N. ;
Yao, L. ;
Nenadic, A. ;
Chin, J. ;
Goble, C. ;
Rector, A. ;
Chadwick, D. ;
Otenko, S. ;
Shi, Q. .
CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2007, 19 (09) :1333-1352
[28]   Fine-Grained Access Control in the Era of Cloud Computing: An Analytical Review [J].
Albulayhi, Khalid ;
Abuhussein, Abdullah ;
Alsubaei, Faisal ;
Sheldon, Frederick T. .
2020 10TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2020, :748-755
[29]   Fine-grained access control with decentralized delegation for collaborative healthcare systems [J].
Li, Minghui ;
Xue, Jingfeng ;
Wang, Yong ;
Lei, Tianwei ;
Kong, Zixiao .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2025, 242
[30]   On the Soundness Property for SQL Queries of Fine-grained Access Control in DBMSs [J].
Shi, Jie ;
Zhu, Hong ;
Fu, Ge ;
Jiang, Tao .
PROCEEDINGS OF THE 8TH IEEE/ACIS INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION SCIENCE, 2009, :469-474