...
首页> 外文期刊>International journal of information and computer security >Semantics-aware security policy specification for the semantic web data
【24h】

Semantics-aware security policy specification for the semantic web data

机译:语义Web数据的语义感知安全策略规范

获取原文
获取原文并翻译 | 示例
           

摘要

The semantic web has been envisioned as a machine-interpretable web, where data instances are described through concepts defined and related in ontologies. Though ontologies are publicly available as a crucial component of the semantic web infrastructure, many data instances are sensitive and should be kept confidential. Sensitive information can be illegally inferred from other seemingly unclassified information in combination with the underlying data semantics and interrelationships revealed by ontologies. In other words, the visibility of ontologies can pose inference threats to the security of data instances, and this requires that security policies be specified in such a way that the semantic relationships among data instances are taken into account. To protect the semantic web data or other semantics-rich data, this paper presents semantics-aware security policy specification. We propose concept-level, association-level and property-level access control models for different security objects, and that authorisations be propagated based on different inference patterns. These propagation policies can be used to generate safe and consistent access control authorisations.
机译:语义Web已被设想为机器可解释的Web,其中数据实例通过本体中定义和相关的概念进行描述。尽管本体作为语义Web基础结构的重要组成部分是公开可用的,但是许多数据实例是敏感的,应予以保密。可以从其他看似未分类的信息,结合本体揭示的基础数据语义和相互关系,非法推断出敏感信息。换句话说,本体的可见性可能对数据实例的安全性造成推理威胁,这要求以考虑数据实例之间的语义关系的方式来指定安全策略。为了保护语义Web数据或其他语义丰富的数据,本文提出了语义感知的安全策略规范。我们为不同的安全对象提出了概念级别,关联级别和属性级别的访问控制模型,并基于不同的推理模式传播了授权。这些传播策略可用于生成安全且一致的访问控制授权。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号