Title :
An access authorization model for relational databases based on algebraic manipulation of view definitions
Author_Institution :
Dept. of Comput. Sci., Univ. of Southern California, Los Angeles, CA, USA
Abstract :
A model of access authorization is described for relational databases. In this model access permissions are a form of database knowledge, from which access permissions that apply to specific requests are inferred. Database access is specified in terms of views: a set of views is defined, and each user is granted permission to access one or more views. Users direct queries at the actual database, not at any particular view. When a request to access a view is presented to the database system, the system derives views of the request that are views of the views to which the user has access permission and presents the user only with these views. The model represents the definitions of views in special metarelations and extends standard algebraic operators to these relations
Keywords :
relational databases; security of data; access authorization model; access permissions; algebraic manipulation; database knowledge; relational databases; special metarelations; standard algebraic operators; view definitions; Artificial intelligence; Authorization; Computer science; Database systems; Information retrieval; Permission; Qualifications; Relational databases;
Conference_Titel :
Data Engineering, 1989. Proceedings. Fifth International Conference on
Conference_Location :
Los Angeles, CA
Print_ISBN :
0-8186-1915-5
DOI :
10.1109/ICDE.1989.47234