首页> 外文会议>36th Annual IEEE International Computer Software and Applications Conference.;vol. 1.;Main Conference >Using Semantic Web Technologies for RBAC in Project-Oriented Environments
【24h】

Using Semantic Web Technologies for RBAC in Project-Oriented Environments

机译:在面向项目的环境中将语义Web技术用于RBAC

获取原文
获取原文并翻译 | 示例

摘要

Project-oriented environments are key to supporting the co-operative work essential to collaborative research activities. However, personnel and resources in project-oriented environments are typically diverse and heterogeneous as they come from both internal as well as external domains. Providing a robust data security system in such an environment becomes critical. The ideal access control architecture should manage access to resources not only based on roles but also based on the specific nature of each resource and its involvement within the project. Traditional role-based access control (RBAC) does not consider the context which often modifies the responsibility given to resources. We propose using an enhanced role-based access control (RBAC) mechanism to address this problem. Specifically, we discuss the implementation of RBAC using ontological methods borrowed from semantic web technology. We used an ontology-based approach for specification and implementation of the RBAC in a collaborative system used within a research group to manage proteomics data, where the access control policy depends on how the project team hierarchy is structured. We describe the design and implementation of this system in this paper. We also provide a preliminary evaluation of the implementation. We find there are several advantages to using ontological methods to implement RBAC. The most significant of these is standardization, which is essential for portability. Also key is modifiability as the actual roles are defined by the ontology itself. Since data access is provided through URI handling moving to a federated system is made easier. This becomes very important in collaborative environments as the data in question is invariably distributed.
机译:面向项目的环境是支持协作研究活动必不可少的合作工作的关键。但是,面向项目的环境中的人员和资源通常来自内部和外部领域,因此是多种多样的和异类的。在这样的环境中提供健壮的数据安全系统变得至关重要。理想的访问控制体系结构不仅应根据角色来管理对资源的访问,还应根据每种资源的特定性质及其在项目中的参与来管理对资源的访问。传统的基于角色的访问控制(RBAC)不考虑通常会修改赋予资源责任的上下文。我们建议使用增强的基于角色的访问控制(RBAC)机制来解决此问题。具体来说,我们讨论了使用从语义Web技术借用的本体方法实现RBAC的方法。我们在研究小组内部使用的协作系统中使用基于本体的方法来规范和实施RBAC,以管理蛋白质组学数据,其中访问控制策略取决于项目团队层次结构的结构。我们在本文中描述了该系统的设计和实现。我们还提供了实施情况的初步评估。我们发现使用本体方法来实现RBAC有很多优点。其中最重要的是标准化,这对于可移植性至关重要。关键也是可修改性,因为实际角色是由本体本身定义的。由于通过URI处理提供了数据访问,因此移动到联合系统变得更加容易。这在协作环境中变得非常重要,因为相关数据始终是分布式的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号