Access control in data management systems:

Access control is one of the fundamental services that any Data Management System should provide. Its main goal is to protect data from unauthorized read and write operations. This is particularly crucial in today's open and interconnected world, where each kind of information can be easily mad...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
1. Verfasser: Ferrari, Elena (VerfasserIn)
Format: Elektronisch E-Book
Sprache:English
Veröffentlicht: [San Rafael, California] Morgan & Claypool Publishers [2010]
Schriftenreihe:Synthesis lectures on data management #4
Schlagworte:
Online-Zugang:Volltext
Zusammenfassung:Access control is one of the fundamental services that any Data Management System should provide. Its main goal is to protect data from unauthorized read and write operations. This is particularly crucial in today's open and interconnected world, where each kind of information can be easily made available to a huge user population, and where a damage or misuse of data may have unpredictable consequences that go beyond the boundaries where data reside or have been generated. This book provides an overview of the various developments in access control for data management systems. Discretionary, mandatory, and role-based access control will be discussed, by surveying the most relevant proposals and analyzing the benefits and drawbacks of each paradigm in view of the requirements of different application domains. Access control mechanisms provided by commercial Data Management Systems are presented and discussed. Finally, the last part of the book is devoted to discussion of some of the most challenging and innovative research trends in the area of access control, such as those related to the Web 2.0 revolution or to the Database as a Service paradigm. This book is a valuable reference for an heterogeneous audience. It can be used as either an extended survey for people who are interested in access control or as a reference book for senior undergraduate or graduate courses in data security with a special focus on access control. It is also useful for technologists, researchers, managers, and developers who want to know more about access control and related emerging trends. Table of Contents: Access Control: Basic Concepts / Discretionary Access Control for Relational Data Management Systems / Discretionary Access Control for Advanced Data Models / Mandatory Access Control / Role-based Access Control / Emerging Trends in Access Control
Intro -- Acknowledgments -- Preface -- Access Control: Basic Concepts -- Introduction -- Historical Prospective -- Data Protection -- Basic Components -- Access Control Policies -- Access Authorizations -- Authorization Subjects -- Authorization Objects -- Authorization Privileges -- Authorizations: Further Components -- Administration Policies -- Access Control Models -- Discretionary Access Control for Relational Data Management Systems -- The Access Matrix Model -- The System R Access Control Model -- GRANT Command -- REVOKE Command -- Authorization Storage -- Authorization Management and Enforcement -- Recursive Revocation -- Authorizations on Views -- DAC Support in SQL -- Extensions to the System R Access Control Model -- Positive and Negative Authorizations -- Temporal Authorizations -- Oracle Virtual Private Database -- Discretionary Access Control for Advanced Data Models -- Access Control for Object DMSs -- Access Control for XML Data -- Access Control Requirements -- Access Control Models -- Efficiency of Access Control -- Mandatory Access Control -- Bell and LaPadula Model -- Multilevel Relational Data Model -- Mandatory Access Control for Object DMSs -- MAC vs DAC -- Information-flow Control Models -- Role-based Access Control -- The ANSI/INCITS RBAC Standard -- Core RBAC -- Hierarchical RBAC -- Constrained RBAC -- RBAC Support in SQL -- Role Administration -- RBAC Extensions -- Emerging Trends in Access Control -- Access Control under the Database as a Service Model -- Access Control for Data Stream Management Systems -- Access Control in the Web 2.0 Era -- OSN Access Control Requirements -- Proposed Solutions -- Further Research Directions in Access Control -- Bibliography -- Author's Biography
Beschreibung:1 Online-Ressource (117 Seiten)
ISBN:9781608453764
DOI:10.2200/S00281ED1V01Y201005DTM004

Es ist kein Print-Exemplar vorhanden.

Fernleihe Bestellen Achtung: Nicht im THWS-Bestand! Volltext öffnen