Query-based database policy assurance using semantic web technologies
Author(s)
Soltren, José Hiram
DownloadFull printable version (10.47Mb)
Other Contributors
Massachusetts Institute of Technology. Dept. of Electrical Engineering and Computer Science.
Advisor
Lalana Kagal.
Terms of use
Metadata
Show full item recordAbstract
In this thesis, we present a novel approach to database security which looks at queries instead of the database tables themselves. In doing so, we use a number of Semantic Web technologies to define rules, translate queries, and make assertions about compliance with existing policies. We can ascertain compliance without looking at the contents of the database. Our system can function as a drop-in addition to an existing database system, adding additional functionality in a robust manner. The policies are written in the AIR language, and the reasoners and wrapper scripts in C++ and Python. We discuss the design and implementation of this system in detail.
Description
Thesis (M. Eng.)--Massachusetts Institute of Technology, Dept. of Electrical Engineering and Computer Science, 2009. Cataloged from PDF version of thesis. Includes bibliographical references (p. 133-135).
Date issued
2009Department
Massachusetts Institute of Technology. Department of Electrical Engineering and Computer SciencePublisher
Massachusetts Institute of Technology
Keywords
Electrical Engineering and Computer Science.