A formal study of collaborative access ...
Type de document :
Communication dans un congrès avec actes
Titre :
A formal study of collaborative access control in distributed datalog
Auteur(s) :
Abiteboul, Serge [Auteur]
Verification in databases [DAHU]
Laboratoire Spécification et Vérification [Cachan] [LSV]
Bourhis, Pierre [Auteur]
Linking Dynamic Data [LINKS]
Vianu, Victor [Auteur]
Verification in databases [DAHU]
Department of Computer Science and Engineering [Univ California San Diego] [CSE - UC San Diego]
Verification in databases [DAHU]
Laboratoire Spécification et Vérification [Cachan] [LSV]
Bourhis, Pierre [Auteur]

Linking Dynamic Data [LINKS]
Vianu, Victor [Auteur]
Verification in databases [DAHU]
Department of Computer Science and Engineering [Univ California San Diego] [CSE - UC San Diego]
Éditeur(s) ou directeur(s) scientifique(s) :
Wim Martens
Thomas Zeume
Thomas Zeume
Titre de la manifestation scientifique :
ICDT 2016 - 19th International Conference on Database Theory
Ville :
Bordeaux
Pays :
France
Date de début de la manifestation scientifique :
2016-03-15
Discipline(s) HAL :
Informatique [cs]/Base de données [cs.DB]
Résumé en anglais : [en]
We formalize and study a declaratively specified collaborative access control mechanism for data dissemination in a distributed environment. Data dissemination is specified using distributed datalog. Access control is also ...
Lire la suite >We formalize and study a declaratively specified collaborative access control mechanism for data dissemination in a distributed environment. Data dissemination is specified using distributed datalog. Access control is also defined by datalog-style rules, at the relation level for extensional relations, and at the tuple level for intensional ones, based on the derivation of tuples. The model also includes a mechanism for " declassifying " data, that allows circumventing overly restrictive access control. We consider the complexity of determining whether a peer is allowed to access a given fact, and address the problem of achieving the goal of disseminating certain information under some access control policy. We also investigate the problem of information leakage, which occurs when a peer is able to infer facts to which the peer is not allowed access by the policy. Finally, we consider access control extended to facts equipped with provenance information, motivated by the many applications where such information is required. We provide semantics for access control with provenance, and establish the complexity of determining whether a peer may access a given fact together with its provenance. This work is motivated by the access control of the Webdamlog system, whose core features it formalizes.Lire moins >
Lire la suite >We formalize and study a declaratively specified collaborative access control mechanism for data dissemination in a distributed environment. Data dissemination is specified using distributed datalog. Access control is also defined by datalog-style rules, at the relation level for extensional relations, and at the tuple level for intensional ones, based on the derivation of tuples. The model also includes a mechanism for " declassifying " data, that allows circumventing overly restrictive access control. We consider the complexity of determining whether a peer is allowed to access a given fact, and address the problem of achieving the goal of disseminating certain information under some access control policy. We also investigate the problem of information leakage, which occurs when a peer is able to infer facts to which the peer is not allowed access by the policy. Finally, we consider access control extended to facts equipped with provenance information, motivated by the many applications where such information is required. We provide semantics for access control with provenance, and establish the complexity of determining whether a peer may access a given fact together with its provenance. This work is motivated by the access control of the Webdamlog system, whose core features it formalizes.Lire moins >
Langue :
Anglais
Comité de lecture :
Oui
Audience :
Internationale
Vulgarisation :
Non
Collections :
Source :
Fichiers
- https://hal.inria.fr/hal-01290497/document
- Accès libre
- Accéder au document
- https://hal.inria.fr/hal-01290497/document
- Accès libre
- Accéder au document
- https://hal.inria.fr/hal-01290497/document
- Accès libre
- Accéder au document
- document
- Accès libre
- Accéder au document
- icdt16.pdf
- Accès libre
- Accéder au document
- document
- Accès libre
- Accéder au document
- icdt16.pdf
- Accès libre
- Accéder au document