Title :
Secure mediated databases
Author :
Candan, K.S. ; Jajodia, Sushil ; Subrahmanian, V.S.
Author_Institution :
Maryland Univ., MD, USA
fDate :
26 Feb-1 Mar 1996
Abstract :
With the evolution of the information superhighway, there is now an immense amount of information available in a wide variety of databases. Furthermore, users often have the ability to access legacy software packages developed by external sources. However, sometimes both the information provided by a data source, as well as one or more of the functions available through a software package may be sensitive-in such cases, organizations require that access by users be controlled. HERMES (HEterogeneous Reasoning and MEdiator System) is a platform that has been developed at the University of Maryland within which mediators may be designed and implemented. HERMES has already been used for a number of applications. In this paper, we provide a formal model of security in mediated systems. We then develop techniques that are sound and complete and respect security constraints of packages/databases participating in the mediated system. The security constraints described an this paper have been implemented, and we describe the existing implementation
Keywords :
authorisation; database management systems; information networks; security of data; software packages; HERMES; Heterogeneous Reasoning and Mediator System; completeness; controlled user access; data source; formal security model; implementation; information superhighway; legacy software packages; secure mediated databases; security constraints; sensitive information; soundness; Contracts; Data security; Deductive databases; National security; Object oriented databases; Object oriented modeling; Packaging; Relational databases; Road transportation; Software packages;
Conference_Titel :
Data Engineering, 1996. Proceedings of the Twelfth International Conference on
Conference_Location :
New Orleans, LA
Print_ISBN :
0-8186-7240-4
DOI :
10.1109/ICDE.1996.492086