Presentation 2003/11/6
A Path-table Based Access Control Model for XML Database System
Naizhen Qi, Michiharu Kudo,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Current approaches for access control incur massive computational costs when XML documents are large and share the same structure. We propose a novel access control model with our prototype implementation to perform a fine-grained access control on both the structural level and the data level. The access control model has a pre-process and a runtime process to decrease runtime computational costs. During the pre-process, we compute a path-table from role/group-specified access control policy. The path-table is a table of pairings of target paths and access conditions. During the runtime process, the access condition of the requested path is looked up from the path-table and evaluated for accessibility check. Furthermore, this model supports access control on arbitrary descending paths in an XML document and also a group of arbitrary nodes that restricted by a given condition.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) XML / XML Database / Access control / Accessibility check / Value-based
Paper # ISEC2003-68,OIS2003-45
Date of Issue

Conference Information
Committee ISEC
Conference Date 2003/11/6(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information Security (ISEC)
Language ENG
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) A Path-table Based Access Control Model for XML Database System
Sub Title (in English)
Keyword(1) XML
Keyword(2) XML Database
Keyword(3) Access control
Keyword(4) Accessibility check
Keyword(5) Value-based
1st Author's Name Naizhen Qi
1st Author's Affiliation IBM Research, Tokyo Research Laboratory()
2nd Author's Name Michiharu Kudo
2nd Author's Affiliation IBM Research, Tokyo Research Laboratory
Date 2003/11/6
Paper # ISEC2003-68,OIS2003-45
Volume (vol) vol.103
Number (no) 416
Page pp.pp.-
#Pages 8
Date of Issue