From MDM to DB2: A Case Study of Security Enforcement Migration - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2012

From MDM to DB2: A Case Study of Security Enforcement Migration

Résumé

This work presents a case study of a migration of attribute-based access control enforcement from the application to the database tier. The proposed migration aims to improve the security and simplify the audit of the enterprise system by enforcing information protection principles of the least privileges and the least common mechanism. We explore the challenges of such migration and implement it in an industrial setting in a context of master data management where data security, privacy and audit are subject to regulatory compliance. Based on our implementation, we propose a general, standards-driven migration methodology.
Fichier principal
Vignette du fichier
978-3-642-31540-4_16_Chapter.pdf (3.05 Mo) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

hal-01534771 , version 1 (08-06-2017)

Licence

Paternité

Identifiants

Citer

Nikolay Yakovets, Jarek Gryz, Stephanie Hazlewood, Paul Van Run. From MDM to DB2: A Case Study of Security Enforcement Migration. 26th Conference on Data and Applications Security and Privacy (DBSec), Jul 2012, Paris, France. pp.207-222, ⟨10.1007/978-3-642-31540-4_16⟩. ⟨hal-01534771⟩
140 Consultations
101 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More