Abstract
The development of geography-based services and systems has created the demands in which access control is the primary concern for geospatial data security. Although there are a variety of models to manage geospatial data access, none of them can fulfil the access control requirements. The objective of this paper is to propose a model that can support both spatio-temporal aspects and other contextual conditions as well as access control based on the role of subject. We call this model Spatial Temporal Role Based Access Control (STRoBAC). In addition, we propose an extension of GeoXACML framework, which is highly scalable and can help in declaring and enforcing various types of rules, to support the proposed model. This is the crucial contribution of our research compared to the existing approaches and models.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
Chun, S.A., Atluri, V.: Geospatial Database Security. In: Gertz, M., Jajodia, S. (eds.) Hand Book of DB Security App. and Trends, pp. 247–248. Springer (2007)
Cuppens, F., Boulahia, N.C.: Modeling Contextual Security Policies. International Journal of Information Security 7(4), 285–305 (2008)
Damiani, M.L., Bertino, E., Catania, B., Perlasca, P.: GEO-RBAC: A Spatially Aware RBAC. ACM Trans. on Info. and System Security 10(1) (2007)
E.J. XACML (June 2012), http://code.google.com/p/enterprise-java-xacml/
Haidar, D.A., Cuppens-Boulahia, N., Cuppens, F., Debar, H.: An Extended RBAC Profile of XACML. In: 3rd ACM Workshop on Secure Web Services, pp. 13–22 (2006)
HERAS-AF (June 2012), http://www.herasaf.org/
Kumar, M., Newman, R.E.: STRBAC – An Approach Towards Spatio-Temporal Role-Based Access Control. In: Communication, Network and Information Security, USA, pp. 150–155 (2006)
Le, T.K.T., Tran, T.Q.N., Dang, T.K.: An Enhanced Access Control Model for GIS Database Security. In: 4th Regional Conference on Information and Communication Technology, Vietnam, pp. 129–136 (2011)
Lin, J., Fang, Y., Chen, B., Wu, P.: Analysis of Access Control Mechanisms for Spatial Database. In: ISPRS (2008)
Matheus, A.: Declaration and Enforcement of Access Restrictions for Distributed Geospatial Information Objects, Master Thesis, Fakultät für Informatik Technische Universität München (2005)
Matheus, A.: GeoXACML, A Spatial Extension to XACML. The Federal Armed Forces Germany Univ., Discussion paper 05-036 (June 16, 2005)
OASIS Brief Introduction to XACML (April 2012), http://www.oasis-open.org/committees/download.php/2713/Brief_Introduction_to_XACML.html
OASIS Differences between XACML 2.0 and XACML 3.0 (April 2012), http://wiki.oasis-open.org/xacml/DifferencesBetweenXACML2.0AndXACML3.0
OASIS XACML (April 2012), http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=xacml#CURRENT
OASIS XACML 2.0 Core Specification (April 2012), http://docs.oasis-open.org/xacml/2.0/access_control-xacml-2.0-core-spec-os.pdf
OASIS XACML 3.0 Core Specification (April 2012), http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-cs-01-en.pdf
OASIS XACML 3.0 and Core Hierarchical Role Based Access Control (April 2012), http://docs.oasis-open.org/xacml/3.0/xacml-3.0-rbac-v1-spec-cs-01-en.pdf
OGC GeoXACML (April 2012), http://www.opengeospatial.org/standards/geoxacml
Sophat, S.: Fundamentals of Geographic Information Systems. Royal University of Phnom Penh (2007)
Sun’s XACML (June 2012), http://sunxacml.sourceforge.net
Tran, T.Q.N., Dang, T.K.: X-STROWL: A Generalized Extension of XACML for Context-aware Spatio-Temporal RBAC Model with OWL. In: 7th International Conference on Digital Information Management, Macau (to appear, 2012)
XACMLight (June 2012), http://sourceforge.net/projects/xacmllight/
What is GIS (October 2011), http://www.gis.com/content/what-gis
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2012 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Le Thi, K.T., Dang, T.K., Kuonen, P., Drissi, H.C. (2012). STRoBAC – Spatial Temporal Role Based Access Control. In: Nguyen, NT., Hoang, K., Jȩdrzejowicz, P. (eds) Computational Collective Intelligence. Technologies and Applications. ICCCI 2012. Lecture Notes in Computer Science(), vol 7654. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-34707-8_21
Download citation
DOI: https://doi.org/10.1007/978-3-642-34707-8_21
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-642-34706-1
Online ISBN: 978-3-642-34707-8
eBook Packages: Computer ScienceComputer Science (R0)