Collaborative Two Level Access Control Mechanism For Shared Xml Warehouse

Ws Zhang,Dx Liu
2004-01-01
Abstract:With the growing popularity of Internet, more and more applications use XML(eXtensible Markup Language) as data exchange format for document communications. And there comes a need for collaboration over network. Cooperation between different parties involves operations on shared XML data in XML warehouse. Security is one of the most important aspects of the XML warehouse. It must be well managed under the access control method. Even though there are some traditional access control models, with many different aspects from normal documents, a new method to perform access control to XML warehouse is necessary. In this paper, we proposed TXAC (Two-level XML Access Control) framework, which includes the TRBAC (Temporal Role Based Access Control Component) and the ELAC (Element Level Access Control) Component as a solution of access control on XML warehouse. In particular, TXAC allows (i) setoriented authorization at file-level, by supported with X-Collection component; (ii) collaboration between TRBAC and ELAC component, by enforcing different level granularity and time constrain. Companied with access control checking algorithms, TXAC can deal with outside access request efficiently. Furthermore, the overall architecture of the TXAC and implementation are described in detail.
What problem does this paper attempt to address?