Title :
A Token-Based Access Control System for RDF Data in the Clouds
Author :
Khaled, Arindam ; Husain, Mohammad Farhan ; Khan, Latifur ; Hamlen, Kevin W. ; Thuraisingham, Bhavani
Author_Institution :
Comput. Sci. Dept., Mississippi State Univ., Starkville, MS, USA
fDate :
Nov. 30 2010-Dec. 3 2010
Abstract :
The Semantic Web is gaining immense popularity-and with it, the Resource Description Framework (RDF)broadly used to model Semantic Web content. However, access control on RDF stores used for single machines has been seldom discussed in the literature. One significant obstacle to using RDF stores defined for single machines is their scalability. Cloud computers, on the other hand, have proven useful for storing large RDF stores, but these system slack access control on RDF data to our knowledge. This work proposes a token-based access control system that is being implemented in Hadoop (an open source cloud computing framework). It defines six types of access levels and an enforcement strategy for the resulting access control policies. The enforcement strategy is implemented at three levels: Query Rewriting, Embedded Enforcement, and Post processing Enforcement. In Embedded Enforcement, policies are enforced during data selection using MapReduce, whereas in Post-processing Enforcement they are enforced during the presentation of data to users. Experiments show that Embedded Enforcement consistently outperforms Post processing Enforcement due to the reduced number of jobs required.
Keywords :
authorisation; cloud computing; query processing; semantic Web; MapReduce; RDF data; RDF store; cloud computer; data presentation; data selection; embedded enforcement; enforcement strategy; hadoop; post processing enforcement; query rewriting; resource description framework; semantic Web; token-based access control system; Access control; Computer architecture; Ontologies; Resource description framework; XML;
Conference_Titel :
Cloud Computing Technology and Science (CloudCom), 2010 IEEE Second International Conference on
Conference_Location :
Indianapolis, IN
Print_ISBN :
978-1-4244-9405-7
Electronic_ISBN :
978-0-7695-4302-4
DOI :
10.1109/CloudCom.2010.76