An ontology-based secure design framework for graph-based databases

被引:0
|
作者
Paneque, Manuel [1 ]
Roldan-Garcia, Maria del Mar [1 ]
Blanco, Carlos [2 ]
Mate, Alejandro [4 ]
Rosado, David G. [3 ]
Trujillo, Juan [4 ]
机构
[1] Univ Malaga, Dept Comp Sci & Programming Languages, ITIS Software, Malaga, Spain
[2] Univ Cantabria, Dept Comp Sci & Elect, ISTR Res Grp, Santander, Spain
[3] Univ Castilla La Mancha, Dept Informat Technol & Syst, GSyA Res Grp, Ciudad Real, Spain
[4] Univ Alicante, Dept Software & Comp Syst, Lucentia Res Grp, Alicante, Spain
关键词
Ontology; Security; Reasoning; Knowledge extraction; Healthcare;
D O I
10.1016/j.csi.2023.103801
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Graph-based databases are concerned with performance and flexibility. Most of the existing approaches used to design secure NoSQL databases are limited to the final implementation stage, and do not involve the design of security and access control issues at higher abstraction levels. Ensuring security and access control for Graphbased databases is difficult, as each approach differs significantly depending on the technology employed. In this paper, we propose the first technology-ascetic framework with which to design secure Graph-based databases. Our proposal raises the abstraction level by using ontologies to simultaneously model database and security requirements together. This is supported by the TITAN framework, which facilitates the way in which both aspects are dealt with. The great advantages of our approach are, therefore, that it: allows database designers to focus on the simultaneous protection of security and data while ignoring the implementation details; facilitates the secure design and rapid migration of security rules by deriving specific security measures for each underlying technology, and enables database designers to employ ontology reasoning in order to verify whether the security rules are consistent. We show the applicability of our proposal by applying it to a case study based on a hospital data access control.
引用
收藏
页数:14
相关论文
共 50 条
  • [31] A Conceptual Framework for an Ontology-Based Examination System
    Felix, Adekoya Adebayo
    Taofiki, Akinwale Adio
    Adetokunbo, Sofoluwe
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2011, 2 (05) : 36 - 42
  • [32] An Ontology-Based Cybersecurity Framework for the Internet of Things
    Mozzaquatro, Bruno Augusti
    Agostinho, Carlos
    Goncalves, Diogo
    Martins, Joao
    Jardim-Goncalves, Ricardo
    SENSORS, 2018, 18 (09)
  • [33] A framework for ontology-based manufacturing support systems
    Cho, Min-Ho
    Lee, Chan-Gie
    Kim, Dong-Won
    PRODUCT LIFECYCLE MANAGEMENT: ASSESSING THE INDUSTRIAL RELEVANCE, 2007, : 425 - 434
  • [34] Ontology-Based Framework for Geospatial Web Services
    Wu Shanming
    Shen Jianjing
    ISISE 2008: INTERNATIONAL SYMPOSIUM ON INFORMATION SCIENCE AND ENGINEERING, VOL 2, 2008, : 107 - 110
  • [35] An Ontology-Based Framework for Personalized Adaptive Learning
    Cheung, Ronnie
    Wan, Calvin
    Cheng, Calvin
    ADVANCES IN WEB-BASED LEARNING-ICWL 2010, 2010, 6483 : 52 - +
  • [36] Ontology-Based Personalized Course Recommendation Framework
    Ibrahim, Mohammed E.
    Yang, Yanyan
    Ndzi, David L.
    Yang, Guangguang
    Al-Maliki, Murtadha
    IEEE ACCESS, 2019, 7 : 5180 - 5199
  • [37] A Framework for Analysis of Ontology-Based Data Access
    Konys, Agnieszka
    COMPUTATIONAL COLLECTIVE INTELLIGENCE, ICCCI 2016, PT II, 2016, 9876 : 397 - 408
  • [38] An Ontology-Based Framework for Discovering Mobile Services
    Niazi, Razieh
    Mahmoud, Qusay H.
    2009 7TH ANNUAL COMMUNICATION NETWORKS AND SERVICES RESEARCH CONFERENCE, 2009, : 178 - 184
  • [39] An Ontology-Based Framework for Collaborative Maintenance Planning
    Ren Genquan
    Zhang Yinwen
    Zhang Li
    Wang Jianmin
    Lan Ting
    KNOWLEDGE-BASED AND INTELLIGENT INFORMATION AND ENGINEERING SYSTEMS, PT I: 15TH INTERNATIONAL CONFERENCE, KES 2011, 2011, 6881 : 528 - 537
  • [40] Ontology-based multiperspective requirements traceability framework
    Namfon Assawamekin
    Thanwadee Sunetnanta
    Charnyote Pluempitiwiriyawej
    Knowledge and Information Systems, 2010, 25 : 493 - 522