Skip to main content

2004 | OriginalPaper | Buchkapitel

Abstracting and Refining Authorization in SQL

verfasst von : Arnon Rosenthal, Edward Sciore

Erschienen in: Secure Data Management

Verlag: Springer Berlin Heidelberg

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

The SQL standard specifies authorization via a large set of rather opaque rules, which are difficult to understand and dangerous to change. To make the model easier to work with, we formalize the implicit principles behind SQL authorization. We then discuss two extensions, for explicit metadata privileges and general privilege inference on derived objects. Although these are quite simple and easily implemented, we show how together, they help solve several administrative problems with existing SQL security. This sort of abstraction is also an important step towards having DBMSs that simultaneously support security policies over SQL, XML, RDF, and other forms of data.

Metadaten
Titel
Abstracting and Refining Authorization in SQL
verfasst von
Arnon Rosenthal
Edward Sciore
Copyright-Jahr
2004
Verlag
Springer Berlin Heidelberg
DOI
https://doi.org/10.1007/978-3-540-30073-1_11

Premium Partner