2006 | OriginalPaper | Chapter
Extending Context Descriptions in Semantics-Aware Access Control
Authors : E. Damiani, S. De Capitani di Vimercati, C. Fugazza, P. Samarati
Published in: Information Systems Security
Publisher: Springer Berlin Heidelberg
Activate our intelligent search to find suitable subject content or patents.
Select sections of text to find matching patents with Artificial Intelligence. powered by
Select sections of text to find additional relevant content using AI-assisted search. powered by
Security is a crucial concern for commercial and mission critical applications in Web-based environments. In our model, context information associated with
Access Control
management policies is defined according to basic operators that can be represented using the
Web Ontology Language
. Standard inference procedures of
Description Logics
are being used to check the consistency of context information referred to by policy conditions and, more interestingly, to pre-process context information for grounding policy propagation and enabling conflict resolution. In this paper, we extend the model to encompass part-of relations between entities in context descriptions and, consequently, revise the policy propagation criteria being applied to the model to take into account the newly introduced relations. Finally, we exemplify modality conflicts arising from part-of relations, a category of
extensional
conflicts (i.e., inconsistencies related to individuals) that cannot be foreseen by looking at the terminology underlying context information.