Rewriting Of Sparql/Update Queries For Securing Data Access

ICICS'10 Proceedings of the 12th international conference on Information and communications security(2010)

引用 3|浏览0
暂无评分
摘要
Several access control models for database management systems (DBMS) only consider how to manage select queries and then assume that similar mechanism would apply to update queries. However they do not take into account that updating data may possibly disclose some other sensitive data whose access would be forbidden through select queries. This is typically the case of current relational DBMS managed through SQL which are wrongly specified and lead to inconsistency between select and update queries. In this paper, we show how to solve this problem in the case of SPARQL queries. We present an approach based on rewriting SPARQL/Update queries. It involves two steps. The first one satisfies the update constraints. The second one handles consistency between select and update operators. Query rewriting is done by adding positive and negative filters (corresponding respectively to permissions and prohibitions) to the initial query.
更多
查看译文
关键词
update query,select query,update constraint,update operator,SPARQL query,access control model,initial query,sensitive data,current relational,database management system,data access
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要