- citati u SCIndeksu: 0
- citati u CrossRef-u:0
- citati u Google Scholaru:[
]
- posete u poslednjih 30 dana:0
- preuzimanja u poslednjih 30 dana:0
|
|
2005, vol. 4, br. 15-16, str. 53-59
|
Kontrola pristupa XML dokumentima
Access control for XML documents
Univerzitet u Novom Sadu, Fakultet tehničkih nauka, Srbija
Ključne reči: XML kontrola pristupa; RBAC
Sažetak
U današnjem dobu informacionih tehnologija kontrola pristupa, obično razmatra na koji način korisnici mogu pristupati resursima računarskog sistema ili "ko šta može da radi". Kontrola prisutpa predstavlja neosporivo, najosnovniji sigurnosni mehanizam koji je danas u upotrebi. XML je danas postao jedan od najrasprostranjenijih formata za razmenu podataka u različitim oblastima. Čest je slučaj da XML dokumenti sadrže informacije različitog stepena dostupnosti koje korisnicima moraju biti selektivno dostupne. Stoga se javila potreba za modelima i mehanizmima za specifikaciju i sprovođenje kontrole pristupa nad XML dokumentima. U radu je dat prikaz odabranih sistema za kontrolu pristupa XML dokumentima.
Abstract
In today's information technology era access control is concerned with the way in which users can access resources in computer system, or informally speaking, with "who can do what". Access control is arguably the most fundamental security mechanism in use today. XML has emerged as a prevalent standard for document representation and exchange. It is often the case that XML documents contain information of different sensitivity degrees that must be selectively shared by user communities. There is thus the need for models and mechanisms enabling the specification and enforcement of access control for XML documents. This paper describes selected access control systems for XML documents.
|
|
|
Reference
|
|
Bertino, E., Castano, S., Ferrari, E. (2001) Securing XML documents with Author-X. IEEE Internet Computing, 5(3), str. 21-31
|
|
Bertino, E., Ferrari, E. (2002) Secure and selective dissemination of XML documents. ACM Transactions on Information and System Security, 5(3), str. 290-331
|
|
Bhatti, R., Joshi, J.B.D., Bertino, E., Ghafoor, A. (2004) XML Based specification for web services document security. IEEE Computer Society Press, 37(4), str. 41-49
|
|
Botha, R.A., Eloff, J.H.R. (2001) An access control architecture for XML documents in workflow environments. South African Computer Journal
|
|
Damiani, E., de Capitani, di V.S., Paraboschi, S., Samarati, R. (2000) Securing XML documents. u: Proceedings of the 7th International Conference on Extending Database Technology, Konstanz, Germany
|
|
Damiani, E., de Capitani, di V.S., Paraboschi, S., Samarati, R. (2002) A fine grained access control system for XML documents. ACM Transactions on Information and System Security, 5(2), str. 169-202
|
2
|
Ferraiolo, D.R., Kuhn, D.R., Chandramouli, R. (2003) Role-based access control. Artech House
|
|
Wang, Y., Tan, K.L. (2001) A Scalable XML access control system. u: International World Wide Web Conference, Dordrecht: Elsevier, str. 150-151
|
|
|
|