ACM Home Page
Please provide us with feedback. Feedback
Access control for XML: a dynamic query rewriting approach
Full text PdfPdf (88 KB)
Source Conference on Information and Knowledge Management archive
Proceedings of the 14th ACM international conference on Information and knowledge management table of contents
Bremen, Germany
POSTER SESSION: Poster Session table of contents
Pages: 251 - 252  
Year of Publication: 2005
ISBN:1-59593-140-6
Authors
Sriram Mohan  Indiana University, Bloomington, IN
Arijit Sengupta  Wright State University
Yuqing Wu  Indiana University, Bloomington, IN
Sponsors
ACM: Association for Computing Machinery
SIGIR: ACM Special Interest Group on Information Retrieval
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 7,   Downloads (12 Months): 46,   Citation Count: 2
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1099554.1099612
What is a DOI?

ABSTRACT

Being able to express and enforce role-based access control on XML data is a critical component of XML data management. However, given the semi-structured nature of XML, this is non-trivial, as access control can be applied on the values of nodes as well as on the structural relationship between nodes. In this context, we adopt and extend a graph editing language for specifying role-based access constraints in the form of security views. A Security Annotated Schema (SAS) is proposed as the internal representation for the security views and can be automatically constructed from the original schema and the security view specification. To enforce the access constraints on user queries, we propose Secure Query Rewrite (SQR) -- a set of rules that can be used to rewrite a user XPath query on the security view into an equivalent XQuery expression against the original data, with the guarantee that the users only see information in the view but not any data that was blocked. Experimental evaluation demonstrates the efficiency and the expressiveness of our approach.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

1
 
2
S. Mohan, A. Sengupta, Y. Wu, and J.Klinginsmith. XML access control, at http://www.cs.indiana.edu/~acxess.


Collaborative Colleagues:
Sriram Mohan: colleagues
Arijit Sengupta: colleagues
Yuqing Wu: colleagues