Sécurisation du contrôle d'accès pour des documents XML

作者: François Dang Ngoc

DOI:

关键词:

摘要: The erosion of trust put in traditional database servers and Database Service Providers the growing interest for different forms selective data dissemination are factors that lead to move access control from clients. Different encryption key schemes have been proposed serve this purpose. By compiling rules into process, all these methods suffer a static way sharing data. With emergence hardware security elements on client devices, more dynamic client-based can be devised. This thesis proposes tamper-resistant XML right controller supporting flexible policies. engine is embedded secure device therefore must cope with specific resources. takes benefit dedicated index quickly converge towards authorized parts – potentially streaming document. Additional mechanisms guarantee input document protected any form tampering replay attacks. Finally, we provide performance measurements show viability our approach smart cards various application contexts.

参考文章(55)
Barbara Carminati, Elisa Bertino, Elena Ferrari, Assuring Security Properties in Third-party Architectures. international conference on data engineering. pp. 547- 548 ,(2005)
Wolfgang Rankl, Smart Card Handbook ,(1997)
Premkumar Devanbu, Michael Gertz, Charles Martel, Stuart G. Stubblebine, Authentic Third-party Data Publication Proceedings of the IFIP TC11/ WG11.3 Fourteenth Annual Working Conference on Database Security: Data and Application Security, Development and Directions. pp. 101- 112 ,(2000) , 10.1007/0-306-47008-X_9
Gerome Miklau, Dan Suciu, Controlling access to published data using cryptography very large data bases. pp. 898- 909 ,(2003) , 10.1016/B978-012722442-8/50084-7
Luc Bouganim, François Dang Nogc, Philippe Pucheral, Lilan Wu, Chip-secured data access: reconciling access rights with data encryption very large data bases. pp. 1133- 1136 ,(2003) , 10.1016/B978-012722442-8/50123-3
Philippe Pucheral, François Dang Ngoc, Luc Bouganim, Tamper-Resistant Ubiquitous Data Management Computer Systems: Science & Engineering. ,vol. 20, ,(2005)
Ernesto Damiani, Sabrina De Capitani Di Vimercati, Stefano Paraboschi, Pierangela Samarati, None, Securing XML Documents extending database technology. pp. 121- 135 ,(2000) , 10.1007/3-540-46439-5_8
Frédéric Cuppens, Nora Cuppens-Boulahia, Thierry Sans, Protection of Relationships in XML Documents with the XML-BB Model Information Systems Security. pp. 148- 163 ,(2005) , 10.1007/11593980_11
Markus G. Kuhn, Oliver Kömmerling, Design principles for tamper-resistant smartcard processors WOST'99 Proceedings of the USENIX Workshop on Smartcard Technology on USENIX Workshop on Smartcard Technology. pp. 2- 2 ,(1999)
Ralph C. Merkle, A Certified Digital Signature international cryptology conference. pp. 218- 238 ,(1989) , 10.1007/0-387-34805-0_21