A model for evaluation and administration of security in object-oriented databases
- 1 April 1994
- journal article
- Published by Institute of Electrical and Electronics Engineers (IEEE) in IEEE Transactions on Knowledge and Data Engineering
- Vol. 6 (2) , 275-292
- https://doi.org/10.1109/69.277771
Abstract
The integration of object-oriented programming concepts with databases is one of the most significant advances in the evolution of database systems. Many aspects of such a combination have been studied, but there are few models to provide security for this richly structured information. We develop an authorization model for object-oriented databases. This model consists of a set of policies, a structure for authorization rules, and algorithms to evaluate access requests against the authorization rules. User access policies are based on the concept of inherited authorization applied along the class structure hierarchy. We propose also a set of administrative policies that allow the control of user access and its decentralization. Finally, we study the effect of class structuring changes on authorization.<>Keywords
This publication has 16 references indexed in Scilit:
- Decentralized Authorization In A Database SystemPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2005
- Discretionary access controls in a high-performance object management systemPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Object-oriented database management systems: concepts and issuesComputer, 1991
- Database securityACM SIGMOD Record, 1990
- Object-oriented databases: definition and research directionsIEEE Transactions on Knowledge and Data Engineering, 1990
- The ROSE data manager: using object technology to support interactive engineering applicationsIEEE Transactions on Knowledge and Data Engineering, 1989
- The source of authority for commercial access controlComputer, 1988
- Modeling lntegrated Manufacturing Data with SAMComputer, 1986
- The INGRES protection systemPublished by Association for Computing Machinery (ACM) ,1976
- Definition and evaluation of access rules in data management systemsPublished by Association for Computing Machinery (ACM) ,1975