Software engineering for security: a roadmap
Proceedings of the Conference on The Future of Software Engineering
Technical opinion: Information system security management in the new millennium
Communications of the ACM
Secure and selective dissemination of XML documents
ACM Transactions on Information and System Security (TISSEC)
Building Software Securely from the Ground Up
IEEE Software
MIDAS/BD: A Methodological Framework for Web Database Design
Revised Papers from the HUMACS, DASWIS, ECOMO, and DAMA on ER 2001 Workshops
Regulating access to XML documents
Das'01 Proceedings of the fifteenth annual working conference on Database and application security
A Role-Based Access Control Model for XML Repositories
WISE '00 Proceedings of the First International Conference on Web Information Systems Engineering (WISE'00)-Volume 1 - Volume 1
XML access control using static analysis
Proceedings of the 10th ACM conference on Computer and communications security
An analysis of XML database solutions for the management of MPEG-7 media descriptions
ACM Computing Surveys (CSUR)
Database Security-Concepts, Approaches, and Challenges
IEEE Transactions on Dependable and Secure Computing
Access control and audit model for the multidimensional modeling of data warehouses
Decision Support Systems
Information and Software Technology
An aspect-oriented methodology for designing secure applications
Information and Software Technology
Editorial: Model-Driven Development for secure information systems
Information and Software Technology
Model driven development of secure XML data warehouses: a case study
Proceedings of the 2010 EDBT/ICDT Workshops
A decade of model-driven security
Proceedings of the 16th ACM symposium on Access control models and technologies
A practical application of our MDD approach for modeling secure XML data warehouses
Decision Support Systems
Hi-index | 0.00 |
In this paper, we propose a methodological approach for the model driven development of secure XML databases (DB). This proposal is within the framework of MIDAS, a model driven methodology for the development of Web Information Systems based on the Model Driven Architecture (MDA) proposed by the Object Management Group (OMG) [20]. The XML DB development process in MIDAS proposes using the data conceptual model as a Platform Independent Model (PIM) and the XML Schema model as a Platform Specific Model (PSM), with both of these represented in UML. In this work, such models will be modified, so as to be able to add security aspects if the stored information is considered as critical. On the one hand, the use of a UML extension to incorporate security aspects at the conceptual level of secure DB development (PIM) is proposed; on the other, the previously-defined XML schema profile will be modified, the purpose being to incorporate security aspects at the logical level of the secure XML DB development (PSM). In addition to all this, the semi-automatic mappings from PIM to PSM for secure XML DB will be defined.