首页> 外文会议>International Conference on Web Information Systems Engineering >Query Monitoring and Analysis for Database Privacy - A Security Automata Model Approach
【24h】

Query Monitoring and Analysis for Database Privacy - A Security Automata Model Approach

机译:数据库隐私的查询监视和分析 - 一种安全自动机模型方法

获取原文
获取外文期刊封面目录资料

摘要

Privacy and usage restriction issues are important when valuable data are exchanged or acquired by different organizations. Standard access control mechanisms either restrict or completely grant access to valuable data. On the other hand, data obfuscation limits the overall usability and may result in loss of total value. There are no standard policy enforcement mechanisms for data acquired through mutual and copyright agreements. In practice, many different types of policies can be enforced in protecting data privacy. Hence there is the need for an unified framework that encapsulates multiple suites of policies to protect the data. We present our vision of an architecture named security automata model (SAM) to enforce privacy-preserving policies and usage restrictions. SAM analyzes the input queries and their outputs to enforce various policies, liberating data owners from the burden of monitoring data access. SAM allows administrators to specify various policies and enforces them to monitor queries and control the data access. Our goal is to address the problems of data usage control and protection through privacy policies that can be defined, enforced, and integrated with the existing access control mechanisms using SAM. In this paper, we lay out the theoretical foundation of SAM, which is based on an automata named Mandatory Result Automata. We also discuss the major challenges of implementing SAM in a real-world database environment as well as ideas to meet such challenges.
机译:当不同组织交换或收购有价值的数据时,隐私和使用限制问题很重要。标准访问控制机制要么限制或完全授予对有价值数据的访问。另一方面,数据混淆限制了整体可用性,可能导致总价值损失。通过共同和版权协议获得的数据没有标准的策略执法机制。在实践中,可以在保护数据隐私时强制执行许多不同类型的策略。因此,需要一个统一的框架,封装多个策略套件以保护数据。我们展示了指定Security Automata Model(SAM)的体系结构的愿景,以强制保留保护策略和使用限制。 SAM分析输入查询及其输出以强制执行各种策略,从监控数据访问的负担中解放数据所有者。 SAM允许管理员指定各种策略并强制执行它们以监视查询并控制数据访问。我们的目标是通过隐私策略解决数据使用控制和保护问题,这些隐私策略可以使用SAM与现有的访问控制机制与现有的访问控制机制集成。在本文中,我们阐述了SAM的理论基础,这是基于命名为强制结果自动机构的自动机构。我们还讨论了在现实世界数据库环境中实施Sam的主要挑战以及满足此类挑战的想法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号