In the context of cooperative information systems, research focused on the interoperability among data sources, related to schematic and syntactic representations or semantic expression. Security introduces new problems of heterogeneity. In this paper we refer to the different ways to represent authorization and rules in access control policies. Our proposition consists in using a role based multy-policy model to represent heterogeneous policy in the same formalism. We also map the local policies creating access bridges and we propose a set of security controls to filter a global user query.
The growing need to share information among independent sources is mostly satisfied by the construction of a Cooperative Information System. In our works, access schemas over physical tables or views of DBMS are described using a role-based model integrating constraints. This description allows to deal with problems related to the heterogeneity of access models, while keeping security properties of local schemas in order to comply with the autonomy of the cooperative stakeholders. In this paper, we describe the extensions proposed to the RBAC model to build access bridges among the local schemas. This proposition will be implemented in a Multi-Agents System ACSIS (Agents for the Cooperation of Secured Information Systems), compliant with XACML standard.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.