An ontology-based secure design framework for graph-based databases

被引:0
|
作者
Paneque, Manuel [1 ]
Roldan-Garcia, Maria del Mar [1 ]
Blanco, Carlos [2 ]
Mate, Alejandro [4 ]
Rosado, David G. [3 ]
Trujillo, Juan [4 ]
机构
[1] Univ Malaga, Dept Comp Sci & Programming Languages, ITIS Software, Malaga, Spain
[2] Univ Cantabria, Dept Comp Sci & Elect, ISTR Res Grp, Santander, Spain
[3] Univ Castilla La Mancha, Dept Informat Technol & Syst, GSyA Res Grp, Ciudad Real, Spain
[4] Univ Alicante, Dept Software & Comp Syst, Lucentia Res Grp, Alicante, Spain
关键词
Ontology; Security; Reasoning; Knowledge extraction; Healthcare;
D O I
10.1016/j.csi.2023.103801
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Graph-based databases are concerned with performance and flexibility. Most of the existing approaches used to design secure NoSQL databases are limited to the final implementation stage, and do not involve the design of security and access control issues at higher abstraction levels. Ensuring security and access control for Graphbased databases is difficult, as each approach differs significantly depending on the technology employed. In this paper, we propose the first technology-ascetic framework with which to design secure Graph-based databases. Our proposal raises the abstraction level by using ontologies to simultaneously model database and security requirements together. This is supported by the TITAN framework, which facilitates the way in which both aspects are dealt with. The great advantages of our approach are, therefore, that it: allows database designers to focus on the simultaneous protection of security and data while ignoring the implementation details; facilitates the secure design and rapid migration of security rules by deriving specific security measures for each underlying technology, and enables database designers to employ ontology reasoning in order to verify whether the security rules are consistent. We show the applicability of our proposal by applying it to a case study based on a hospital data access control.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] Toward an ontology-based framework for clinical research databases
    Kong, Y. Megan
    Dahlke, Carl
    Xiang, Qun
    Qian, Yu
    Karp, David
    Scheuermann, Richard H.
    JOURNAL OF BIOMEDICAL INFORMATICS, 2011, 44 (01) : 48 - 58
  • [2] Improving the Computational Performance of Ontology-Based Classification Using Graph Databases
    Lampoltshammer, Thomas J.
    Wiegand, Stefanie
    REMOTE SENSING, 2015, 7 (07): : 9473 - 9491
  • [3] Design of ontology-based distributed information integration framework
    Li, GY
    Liu, HB
    ICEMI 2005: Conference Proceedings of the Seventh International Conference on Electronic Measurement & Instruments, Vol 3, 2005, : 437 - 441
  • [4] A Bespoked secure framework for an ontology-based data-extraction system
    Indumathi J.
    Uma G.V.
    Journal of Software Engineering, 2010, 4 (02): : 156 - 168
  • [5] A BIM and Ontology-based Intelligent Application Framework
    Chen, Guitao
    Luo, Yupeng
    PROCEEDINGS OF 2016 IEEE ADVANCED INFORMATION MANAGEMENT, COMMUNICATES, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (IMCEC 2016), 2016, : 494 - 497
  • [6] An ontology-based approach for integrating heterogeneous databases
    Asgari, Reza
    Moghadam, Milad Gholipoor
    Mahdavi, Mehregan
    Erfanian, Aida
    OPEN COMPUTER SCIENCE, 2015, 5 (01) : 41 - 50
  • [7] An Ontology-Based Framework for Decision Support in Assembly Variant Design
    Das, Shantanu Kumar
    Swain, Abinash Kumar
    JOURNAL OF COMPUTING AND INFORMATION SCIENCE IN ENGINEERING, 2021, 21 (02)
  • [8] OSAP: An Ontology-based Secure Access Platform
    Shen, Shigen
    Ye, Lihua
    Yue, Guangxue
    ISIP: 2009 INTERNATIONAL SYMPOSIUM ON INFORMATION PROCESSING, PROCEEDINGS, 2009, : 396 - 399
  • [9] Ontology-based trajectory simulation framework
    Durak, Umut
    Oguztuzun, Halit
    Ider, S. Kemal
    JOURNAL OF COMPUTING AND INFORMATION SCIENCE IN ENGINEERING, 2008, 8 (01) : 0145031 - 0145035
  • [10] An Ontology-based Framework for Analysis Recommendation
    Henriques, Gabriela
    Stacey, Deborah
    2014 IEEE INTERNATIONAL CONFERENCE ON BIOINFORMATICS AND BIOENGINEERING (BIBE), 2014, : 277 - 282