期刊文献+

DTD可选的XML访问控制研究 被引量:2

XML Access Control with Optional DTD
下载PDF
导出
摘要 为解决XML管理安全问题,提出了DTD可选的XML访问控制系统OD-XACS(XMLAccess Control System with Op-tional DTD),并给出了安全性分析.OD-XACS支持访问控制规则中带有{//,*,[]}的复杂XPath式.有DTD时,OD-XACS利用XPath式对DTD的可满足性验证访问控制规则的有效性,并对由规则中XPath式构造的不确定有限自动机进行具体化,消除了这些XPath式中的冗余.实验表明,访问控制规则的验证和具体化可以极大地减轻XML查询引擎的负担. To solve XML managerial security problem, an XML Access Control System with Optional DTD(OD-XACS) is proposed and its security is analyzed. OD-XACS supports complex XPath with {//,* , [ ]} in access control rules. With DTD, access control rules are validated according to XPath satisfiability. Moreover, XPath redundancy in access control rules is partially eliminated by NFA materialization. Experimental results show that validation and redundancy elimination of rules can relieve the burden on XML euerv engine.
作者 曹益华 张昱
出处 《小型微型计算机系统》 CSCD 北大核心 2008年第1期73-79,共7页 Journal of Chinese Computer Systems
基金 国家自然科学基金项目(60673126)资助 中国科学院计算机科学重点实验室开放课题基金项目(SYSKF0502)资助
关键词 DTD XPATH 具体化 访问控制 自动机 DTD XPath materialization access control automata
  • 相关文献

参考文献18

  • 1Chung-Hwan Lim, Seog Park, Sang H Son. Access control of XML documents considering update operations [C]. In.. Proceedings of the ACM Workshop on XML Security, Fairfax, VA, 2003, 49-59. 被引量:1
  • 2James Clark, Steve DeRose, XPath version 1.0. W3C recommendation[EB/OL], http;//www. w3. org/TR/xpath, 1999. 被引量:1
  • 3Cho SungRan, Srivastava Divesh. Secure evaluation of XML queries[J], Dissertation Abstracts International. 2003, 64 (05)B:2261. 被引量:1
  • 4Yu T, Srivastava D, Lakshmanan L, et al. Compressed accessibility map: efficient access control for XML[C]. In: Proceedings of the 28th VLDB Conference, Hong Kong, 2002. 被引量:1
  • 5Fan W, Chan C Y, Garofalakis M. Secure XML querying with security views [C]. In: Proceedings of ACM SIGMOD Intl' Conference, Paris, France, 2004: 587-598. 被引量:1
  • 6Xinwen Zhang, Jaehong Park, Ravi Sandhu. Schema based XML security: RBAC approach[C]. 17th IFIP Working Conference on Data and Application Security, Estes Park, Colorado, USA, 2003. 被引量:1
  • 7Ernesto Damiani, Sabrina De Capitani di Vimercati, Stefano Paraboschi, et al. A fine-grained access control system for XML documents[J]. ACM Transactions on Information and System Security (TISSEC), 2002, 5(2): 169-202. 被引量:1
  • 813o Luo, Dongwon Lee, Wang-Chien Lee, et al. QFilter: finegrained run-time XML access control via NFA-based query rewriting [C]. In: 13th ACM Int'l Conf. on Information and Knowledge Management (CIKM), Washington DC, USA, 2004. 被引量:1
  • 9Michael Benedikt, Wenfei Fan, Floris Geerts. XPath satisfiability in the presence of DTDs[C]. In: Proceedings of the twenty-fourth ACM SIGMOD-SIGACT-SIGART Symposium on Principles of Database Systems, 2005: 25-36. 被引量:1
  • 10Stefan Bottcher, Rita Steinmetz. A DTD graph based XPath query subsumption Test [C]. XML Database Symposium (XSym 2003) at VLDB, Berlin, Germany, 2003. 被引量:1

二级参考文献6

  • 1Yanlei Diao, Peter Fischer, Michael Franklin, Raymond To.YFilter: efficient and scalable filtering of XML documents[C].ICDE 2002, February 2002:341-344 被引量:1
  • 2Yanlei Diao, Mehmet Altinel, Michael J. Franklin et al. Path sharing and predicate evaluation for high-performance XML filtering[J]. ACM TODS, December 2003,28(4):467-516. 被引量:1
  • 3Green T J, Miklau G et al. Processing XML streams with deterministic automata and stream indexes[J]. ACM TODS, Dec. 2004,29 (4): 752-788. 被引量:1
  • 4YFilter 1.0 code release[EB/OL], http://yfilter, cs. berkeley.edu/code_release, htm, April 2005. 被引量:1
  • 5XMLTK 2.0 code release[EB/OL], http://www. cs. washington. edu/homes/suciu/XMLTK/xmltk-v2.0, zip, April 2005. 被引量:1
  • 6Albrecht Schmidt, Florian Waas. etc. XMark: a benchmark for XML data management [C]. Proceedings of the 28th VLDB Conference, Hong Kong, China, 2002. 被引量:1

共引文献1

同被引文献16

引证文献2

二级引证文献11

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部