An ontology-based secure design framework for graph-based databases

被引:0
|
作者
Paneque, Manuel [1 ]
Roldan-Garcia, Maria del Mar [1 ]
Blanco, Carlos [2 ]
Mate, Alejandro [4 ]
Rosado, David G. [3 ]
Trujillo, Juan [4 ]
机构
[1] Univ Malaga, Dept Comp Sci & Programming Languages, ITIS Software, Malaga, Spain
[2] Univ Cantabria, Dept Comp Sci & Elect, ISTR Res Grp, Santander, Spain
[3] Univ Castilla La Mancha, Dept Informat Technol & Syst, GSyA Res Grp, Ciudad Real, Spain
[4] Univ Alicante, Dept Software & Comp Syst, Lucentia Res Grp, Alicante, Spain
关键词
Ontology; Security; Reasoning; Knowledge extraction; Healthcare;
D O I
10.1016/j.csi.2023.103801
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Graph-based databases are concerned with performance and flexibility. Most of the existing approaches used to design secure NoSQL databases are limited to the final implementation stage, and do not involve the design of security and access control issues at higher abstraction levels. Ensuring security and access control for Graphbased databases is difficult, as each approach differs significantly depending on the technology employed. In this paper, we propose the first technology-ascetic framework with which to design secure Graph-based databases. Our proposal raises the abstraction level by using ontologies to simultaneously model database and security requirements together. This is supported by the TITAN framework, which facilitates the way in which both aspects are dealt with. The great advantages of our approach are, therefore, that it: allows database designers to focus on the simultaneous protection of security and data while ignoring the implementation details; facilitates the secure design and rapid migration of security rules by deriving specific security measures for each underlying technology, and enables database designers to employ ontology reasoning in order to verify whether the security rules are consistent. We show the applicability of our proposal by applying it to a case study based on a hospital data access control.
引用
收藏
页数:14
相关论文
共 50 条
  • [21] An ontology-based product design framework for manufacturability verification and knowledge reuse
    Li, Zhi
    Zhou, Xiaowu
    Wang, W. M.
    Huang, George
    Tian, Zonggui
    Huang, Shaowei
    INTERNATIONAL JOURNAL OF ADVANCED MANUFACTURING TECHNOLOGY, 2018, 99 (9-12): : 2121 - 2135
  • [22] An Ontology-Based Collaborative Design System
    Su, Tieming
    Qiu, Xinpeng
    Yu, Yunlong
    COOPERATIVE DESIGN, VISUALIZATION, AND ENGINEERING, PROCEEDINGS, 2009, 5738 : 69 - 76
  • [23] Ontology-Based Design of Space Systems
    Hennig, Christian
    Viehl, Alexander
    Kaempgen, Benedikt
    Eisenmann, Harald
    SEMANTIC WEB - ISWC 2016, PT II, 2016, 9982 : 308 - 324
  • [24] Ontology-Based Design Pattern Selection
    Naghdipour, Amene
    Hasheminejad, Seyed Mohammad Hossin
    2021 26TH INTERNATIONAL COMPUTER CONFERENCE, COMPUTER SOCIETY OF IRAN (CSICC), 2021,
  • [25] An Ontology-Based Design Knowledge Model
    Tang, G. X.
    Guo, H.
    Jin, W. D.
    FUNCTIONAL MANUFACTURING TECHNOLOGIES AND CEEUSRO I, 2010, 426-427 : 697 - 700
  • [26] The Ontology-based Business Architecture Engineering Framework
    Grigoriev, Lev
    Kudryavtsev, Dmitry
    NEW TRENDS IN SOFTWARE METHODOLOGIES, TOOLS AND TECHNIQUES, 2011, 231 : 233 - 252
  • [27] An Ontology-Based Framework to Model User Interests
    Darabi, Majid
    Tabrizi, Nasseh
    2016 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE & COMPUTATIONAL INTELLIGENCE (CSCI), 2016, : 398 - 403
  • [28] Ontology-based multiperspective requirements traceability framework
    Assawamekin, Namfon
    Sunetnanta, Thanwadee
    Pluempitiwiriyawej, Charnyote
    KNOWLEDGE AND INFORMATION SYSTEMS, 2010, 25 (03) : 493 - 522
  • [29] A new ontology-based multi agent framework for intrusion detection
    Retnaswamy, Bharathi
    Ponniah, Krishna Kumar
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2016, 29 (17) : 2490 - 2502
  • [30] A Framework of Ontology-based Knowledge Management System
    Li, Haisheng
    Li, Wenzheng
    Cai, Qiang
    Liu, Hongzhi
    2009 2ND IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY, VOL 2, 2009, : 374 - 377