学位论文详细信息
On Fine-Grained Access Control for XML
Computer Science;access control;XML;fine-grained;security;access matrix
Zhuo, Donghui
University of Waterloo
关键词: Computer Science;    access control;    XML;    fine-grained;    security;    access matrix;   
Others  :  https://uwspace.uwaterloo.ca/bitstream/10012/1058/1/dhzhuo2003.pdf
瑞士|英语
来源: UWSPACE Waterloo Institutional Repository
PDF
【 摘 要 】

Fine-grained access control for XML is about controlling access to XML documents at the granularity of individual elements or attributes. This thesis addresses two problems related to XML access controls. The first is efficient, secure evaluation of XPath expressions. We present a technique that secures path expressions by means of querymodification, and we show that the query modification algorithm is correct under a language-independent semantics for secure query evaluation. The second problem is to provide a compact, yet useful, representation of the access matrix. Since determining a user;;s privilege directly from access control policies can be extremely inefficient, materializing the access matrix---the net effect of the access control policies---is a common approach to speed up the authorization decision making. The fine-grained nature of XML access controls, however, makes the space cost of matrix materialization a significant issue. We present a codebook-based technique that records access matrices compactly. Our experimental study shows that the codebook approach exhibits significant space savings over other storage schemes, such as the access control list and the compressed accessibility map. The solutions to the above two problems provide a foundation for the development of an efficient mechanism that enforces fine-grained access controls for XML databases in the cases of query access.

【 预 览 】
附件列表
Files Size Format View
On Fine-Grained Access Control for XML 580KB PDF download
  文献评价指标  
  下载次数:18次 浏览次数:52次