A logical formalization of secure XML database

被引:0
作者
Gabillon, Alban [1 ]
机构
[1] Univ Pau & Pays Adour, IUT Mont de Marsan, LIUPPA, CSySEC, F-40000 Mont De Marsan, France
来源
COMPUTER SYSTEMS SCIENCE AND ENGINEERING | 2006年 / 21卷 / 05期
关键词
secure XML database; privacy; security; logical theory; XPath; XUpdate;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we first define a logical theory representing an XML database supporting XPath as query language and XUpdate as modification language. We then extend our theory with predicates allowing us to specify the security policy protecting the database. The security policy includes rules addressing the read and write privileges. We propose axioms to derive the database view each user is permitted to see. We also propose axioms to derive the new database content after an update.
引用
收藏
页码:353 / 365
页数:13
相关论文
共 32 条
  • [1] Bertino E., 2000, WORLD WIDE WEB J, V3
  • [2] BRAY T, 2000, WORLD WIDE WEB C OCT
  • [3] BRUNO E, 2003, P 2003 ACM S DOC ENG, P1
  • [4] CLARK J, 1999, WORLD WIDE WEB C NOV
  • [5] COHEN E, 2002, P PODS 2002
  • [6] Logical foundations of multilevel databases
    Cuppens, F
    Gabillon, A
    [J]. DATA & KNOWLEDGE ENGINEERING, 1999, 29 (03) : 259 - 291
  • [7] CUPPENS F, 2005, 1 INT C INF SYST SEC
  • [8] Damiani E., 2002, ACM Transactions on Information and Systems Security, V5, P169, DOI 10.1145/505586.505590
  • [9] DAMIANI E, 2000, P 2000 INT C EXT DAT
  • [10] DECAPITANI S, P SEC WEB SERV 2005