Protecting personal data with various granularities: a logic-based access control approach

  • Authors:
  • Bat-Odon Purevjii;Masayoshi Aritsugi;Sayaka Imai;Yoshinari Kanamori;Cherri M. Pancake

  • Affiliations:
  • Department of Computer Science, Faculty of Engineering, Gunma University, Kiryu, Gunma, Japan;Department of Computer Science, Faculty of Engineering, Gunma University, Kiryu, Gunma, Japan;Department of Computer Science, Faculty of Engineering, Gunma University, Kiryu, Gunma, Japan;Department of Computer Science, Faculty of Engineering, Gunma University, Kiryu, Gunma, Japan;School of Electrical Engineering & Computer Science, Oregon State University, Corvallis, OR

  • Venue:
  • CIS'05 Proceedings of the 2005 international conference on Computational Intelligence and Security - Volume Part II
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we present a rule-based approach to fine-grained data-dependent access control for database systems. Authorization rules in this framework are described in a logical language that allows us to specify policies systematically and easily. The language expresses authorization rules based on the values, types, and semantics of data elements common to the relational data model. We demonstrate the applicability of our approach by describing several data-dependent policies using an example drawn from a medical information system.