{"title":"Modeling and Enforcing Access Control Obligations for SPARQL-DL Queries","authors":"Nicoletta Fornara, Fabio Marfia","doi":"10.1145/2993318.2993337","DOIUrl":null,"url":null,"abstract":"Different access control models are presented in literature for semantic data, allowing the expression and enforcement of access policies that are based on roles and other attributes of the requesting user usually. We investigate a different access control perspective in the present work, allowing a Policy Administrator to define system obligations that are focused on the enhanced semantics, with a particular reference to the information that can be inferred from the starting knowledge representation, using DL reasoning. That is done by applying a paradigm for the specification and enforcement of access control obligations to the SPARQL-DL query model for OWL ontologies. The presented approach allows more than a simple permit/deny control on inferred data (e.g., data can be returned, but after an anonymization process), together with the possibility of specifying very expressive policies.","PeriodicalId":177013,"journal":{"name":"Proceedings of the 12th International Conference on Semantic Systems","volume":"9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-09-12","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 12th International Conference on Semantic Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2993318.2993337","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
Abstract
Different access control models are presented in literature for semantic data, allowing the expression and enforcement of access policies that are based on roles and other attributes of the requesting user usually. We investigate a different access control perspective in the present work, allowing a Policy Administrator to define system obligations that are focused on the enhanced semantics, with a particular reference to the information that can be inferred from the starting knowledge representation, using DL reasoning. That is done by applying a paradigm for the specification and enforcement of access control obligations to the SPARQL-DL query model for OWL ontologies. The presented approach allows more than a simple permit/deny control on inferred data (e.g., data can be returned, but after an anonymization process), together with the possibility of specifying very expressive policies.