{"title":"为SPARQL-DL查询建模和执行访问控制义务","authors":"Nicoletta Fornara, Fabio Marfia","doi":"10.1145/2993318.2993337","DOIUrl":null,"url":null,"abstract":"Different access control models are presented in literature for semantic data, allowing the expression and enforcement of access policies that are based on roles and other attributes of the requesting user usually. We investigate a different access control perspective in the present work, allowing a Policy Administrator to define system obligations that are focused on the enhanced semantics, with a particular reference to the information that can be inferred from the starting knowledge representation, using DL reasoning. That is done by applying a paradigm for the specification and enforcement of access control obligations to the SPARQL-DL query model for OWL ontologies. The presented approach allows more than a simple permit/deny control on inferred data (e.g., data can be returned, but after an anonymization process), together with the possibility of specifying very expressive policies.","PeriodicalId":177013,"journal":{"name":"Proceedings of the 12th International Conference on Semantic Systems","volume":"9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-09-12","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":"{\"title\":\"Modeling and Enforcing Access Control Obligations for SPARQL-DL Queries\",\"authors\":\"Nicoletta Fornara, Fabio Marfia\",\"doi\":\"10.1145/2993318.2993337\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Different access control models are presented in literature for semantic data, allowing the expression and enforcement of access policies that are based on roles and other attributes of the requesting user usually. We investigate a different access control perspective in the present work, allowing a Policy Administrator to define system obligations that are focused on the enhanced semantics, with a particular reference to the information that can be inferred from the starting knowledge representation, using DL reasoning. That is done by applying a paradigm for the specification and enforcement of access control obligations to the SPARQL-DL query model for OWL ontologies. The presented approach allows more than a simple permit/deny control on inferred data (e.g., data can be returned, but after an anonymization process), together with the possibility of specifying very expressive policies.\",\"PeriodicalId\":177013,\"journal\":{\"name\":\"Proceedings of the 12th International Conference on Semantic Systems\",\"volume\":\"9 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2016-09-12\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"3\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of the 12th International Conference on Semantic Systems\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1145/2993318.2993337\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 12th International Conference on Semantic Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2993318.2993337","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Modeling and Enforcing Access Control Obligations for SPARQL-DL Queries
Different access control models are presented in literature for semantic data, allowing the expression and enforcement of access policies that are based on roles and other attributes of the requesting user usually. We investigate a different access control perspective in the present work, allowing a Policy Administrator to define system obligations that are focused on the enhanced semantics, with a particular reference to the information that can be inferred from the starting knowledge representation, using DL reasoning. That is done by applying a paradigm for the specification and enforcement of access control obligations to the SPARQL-DL query model for OWL ontologies. The presented approach allows more than a simple permit/deny control on inferred data (e.g., data can be returned, but after an anonymization process), together with the possibility of specifying very expressive policies.