Access Control in Data Management Systems

E. Ferrari
{"title":"Access Control in Data Management Systems","authors":"E. Ferrari","doi":"10.2200/S00281ED1V01Y201005DTM004","DOIUrl":null,"url":null,"abstract":"Access control is one of the fundamental services that any Data Management System should provide. Its main goal is to protect data from unauthorized read and write operations. This is particularly crucial in today's open and interconnected world, where each kind of information can be easily made available to a huge user population, and where a damage or misuse of data may have unpredictable consequences that go beyond the boundaries where data reside or have been generated. This book provides an overview of the various developments in access control for data management systems. Discretionary, mandatory, and role-based access control will be discussed, by surveying the most relevant proposals and analyzing the benefits and drawbacks of each paradigm in view of the requirements of different application domains. Access control mechanisms provided by commercial Data Management Systems are presented and discussed. Finally, the last part of the book is devoted to discussion of some of the most challenging and innovative research trends in the area of access control, such as those related to the Web 2.0 revolution or to the Database as a Service paradigm. This book is a valuable reference for an heterogeneous audience. It can be used as either an extended survey for people who are interested in access control or as a reference book for senior undergraduate or graduate courses in data security with a special focus on access control. It is also useful for technologists, researchers, managers, and developers who want to know more about access control and related emerging trends. Table of Contents: Access Control: Basic Concepts / Discretionary Access Control for Relational Data Management Systems / Discretionary Access Control for Advanced Data Models / Mandatory Access Control / Role-based Access Control / Emerging Trends in Access Control","PeriodicalId":187413,"journal":{"name":"Synthesis Lectures on Data Management","volume":"68 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-05-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"51","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Synthesis Lectures on Data Management","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.2200/S00281ED1V01Y201005DTM004","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 51

Abstract

Access control is one of the fundamental services that any Data Management System should provide. Its main goal is to protect data from unauthorized read and write operations. This is particularly crucial in today's open and interconnected world, where each kind of information can be easily made available to a huge user population, and where a damage or misuse of data may have unpredictable consequences that go beyond the boundaries where data reside or have been generated. This book provides an overview of the various developments in access control for data management systems. Discretionary, mandatory, and role-based access control will be discussed, by surveying the most relevant proposals and analyzing the benefits and drawbacks of each paradigm in view of the requirements of different application domains. Access control mechanisms provided by commercial Data Management Systems are presented and discussed. Finally, the last part of the book is devoted to discussion of some of the most challenging and innovative research trends in the area of access control, such as those related to the Web 2.0 revolution or to the Database as a Service paradigm. This book is a valuable reference for an heterogeneous audience. It can be used as either an extended survey for people who are interested in access control or as a reference book for senior undergraduate or graduate courses in data security with a special focus on access control. It is also useful for technologists, researchers, managers, and developers who want to know more about access control and related emerging trends. Table of Contents: Access Control: Basic Concepts / Discretionary Access Control for Relational Data Management Systems / Discretionary Access Control for Advanced Data Models / Mandatory Access Control / Role-based Access Control / Emerging Trends in Access Control
数据管理系统中的访问控制
访问控制是任何数据管理系统都应该提供的基本服务之一。它的主要目的是保护数据免受未经授权的读写操作。在今天这个开放和相互联系的世界里,这一点尤其重要,在这个世界里,每一种信息都可以很容易地提供给庞大的用户群体,而数据的损坏或滥用可能会产生不可预测的后果,超出数据驻留或产生的边界。本书概述了数据管理系统访问控制的各种发展。根据不同应用程序领域的需求,通过调查最相关的建议并分析每种范式的优点和缺点,将讨论自由裁量、强制和基于角色的访问控制。提出并讨论了商业数据管理系统提供的访问控制机制。最后,本书的最后一部分专门讨论了访问控制领域中一些最具挑战性和创新性的研究趋势,例如与Web 2.0革命或数据库即服务范式相关的趋势。这本书对形形色色的读者来说是一本有价值的参考书。它既可以作为对访问控制感兴趣的人的扩展调查,也可以作为数据安全高级本科或研究生课程的参考书,特别关注访问控制。对于想要了解更多访问控制和相关新兴趋势的技术人员、研究人员、管理人员和开发人员来说,它也很有用。目录:访问控制:基本概念/关系数据管理系统的自主访问控制/高级数据模型的自主访问控制/强制访问控制/基于角色的访问控制/访问控制的新兴趋势
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信