Proceedings of the IJCAI-07 Workshop on Semantic Web for Collaborative Knowledge Acquisition

Policy-Based Access Control for an RDF Store

, , and

Specialized RDF stores are essential parts of many Semantic Web applications. Current RDF stores have focused primarily on efficiently storing and querying large volumes of data, with little attention to other features common to many database systems, including how information is updated and maintained and how data access is controlled. The problem is complicated because adding or deleting a simple fact (i.e., an RDF triple) is not atomic, since it can trigger reasoning that adds or deletes derived triples. Current access control mechanisms for RDF stores largely ignore this aspect. We describe a policy-based mechanism for access control in an RDF store. RAP is a prototype implementation of an RDF store with integrated maintenance capabilities and access control using user-defined policies. All actions to the store are routed through the RAP policy engine to determine whether the action is permitted or prohibited. In the RAP framework. The same RDF store also stores the policy and metadata about the triples, allowing a wider range of policy specifications.


  • 177545 bytes

  • 615697 bytes

access control. security, ai, owl, policy, privacy, rdf, reasoning, semantic web

InProceedings

Downloads: 8765 downloads

Google Scholar Citations: 34 citations

UMBC ebiquity