skip to main content
10.1145/800182.810400acmconferencesArticle/Chapter ViewAbstractPublication Pagesacm-national-conferenceConference Proceedingsconference-collections
Article
Free Access

Access control in a relational data base management system by query modification

Published:01 January 1974Publication History

ABSTRACT

This work describes the access control system being implemented in INGRES (INteractive Graphics and REtrieval System). The scheme can be applied to any relational data base management system and has several advantages over other suggested schemes.

These include:

a) implementation ease

b) small execution time overhead

c) powerful and flexible controls

d) conceptual simplicity

The basic idea utilized is that a user interaction with the data base is modified to an alternate form which is guaranteed to have no access violations. This modification takes place in a high level interaction language. Hence, the processing of a resulting interaction can be accomplished with no further regard for protection. In particular, any procedure calls in the access paths for control purposes, such as in [1,2], are avoided.

References

  1. 1.Hoffman, L., "The Formulary Model for Access Control and Privacy," Stanford Linear Accelerator Center Report 117, May, 1970.Google ScholarGoogle Scholar
  2. 2."CODASYL Data Description Language," NBS Handbook 112, U. S. Dept. of Commerce, January, 1974.Google ScholarGoogle Scholar
  3. 3.Browne, P. and Steinauer, D., "A Model for Access Control," Proc. 1971 ACM-SIGFIDET Workshop on Data Description, Access and Control, San Diego, Calif., November, 1971.Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. 4.Weissman, C., "Security Controls in the ADEPT-50 Time Sharing System," Proc. 1969 Fall Joint Computer Conference, November, 1969.Google ScholarGoogle Scholar
  5. 5.Friedman, T., "The Authorization Problem in Shared Files," IBM Systems Journal, No. 4, 1970.Google ScholarGoogle Scholar
  6. 6.McDonald, N., Stonebraker, M., and Wong, E., "Preliminary Specification of INGRES," Electronics Research Laboratory Report #435-436, University of California, Berkeley, California, May, 1974.Google ScholarGoogle Scholar
  7. 7.Owens, R., "Evaluation of Access Authorization Characteristics of Derived Data Sets," Proc. 1971 SIGFIDET Workshop on Data Description, Access and Control, San Diego, California, November, 1971.Google ScholarGoogle Scholar
  8. 8.Systems," Project MAC Report TR-89, M.I.T., Cambridge, Mass., July, 1971.Google ScholarGoogle Scholar
  9. 9.Codd, E., "A Data Base Sublanguage Founded on the Relational Calculus," Proc. 1971 SIGFIDET Workshop on Data Description, Access and Control, San Diego, California, November, 1971.Google ScholarGoogle ScholarDigital LibraryDigital Library
  10. 10.Boyce, R., et al., "Specifying Queries as Relational Expressions: SQUARE," IBM Technical Report RJ1291, IBM Research Laboratory, San Jose, California, October, 1973.Google ScholarGoogle Scholar
  11. 11.Chamberlin, D. and Boyce, R., "SEQUEL: A Structured English Query Language," Proc. 1974 ACM-SIGFIDET Workshop on Data Description, Access and Control, Ann Arbor, Michigan, May, 1974. Google ScholarGoogle ScholarDigital LibraryDigital Library
  12. 12.Codd, E., "Relational Completeness of Data Base Sublanguages," Courant Computer Science Symposium, Vol. 6, Data Base Systems, Prentice Hall, New York, May, 1971.Google ScholarGoogle Scholar
  13. 13.Stonebraker, M., "A Functional View of Data Independence," Proc. 1974 ACM-SIGFIDET Workshop on Data Description, Access and Control, Ann Arbor, Mich., May 1974. Google ScholarGoogle ScholarDigital LibraryDigital Library
  14. 14.Codd, E., "A Relational Model of Data for Large Shared Data Banks," CACM, Vol. 13, No. 6, June, 1970. Google ScholarGoogle ScholarDigital LibraryDigital Library
  15. 15.Rothnie, J., "An Approach to Implementing a Relational Data Management System," Proc. 1974 ACM-SIGFIDET Workshop on Data Description Access and Control, Ann Arbor, Michigan, May, 1974. Google ScholarGoogle ScholarDigital LibraryDigital Library
  16. 16.Boyce, R. and Chamberlin, D., "Using a Structured English Query Language as a Data Definition Facility,$" IBM Research Report No. RJ 1318, IBM Research Laboratory, San Jose, California, December, 1973.Google ScholarGoogle Scholar
  17. 17.Graham, R., "Protection in an Information Processing Utility," CACM, Vol. 11, No. 5, May 1968. Google ScholarGoogle ScholarDigital LibraryDigital Library
  18. 18.Lampson, B., "Dynamic Protection Structures," Proc. 1969 Fall Joint Computer Conference, November 1969.Google ScholarGoogle Scholar

Index Terms

  1. Access control in a relational data base management system by query modification

          Recommendations

          Comments

          Login options

          Check if you have access through your login credentials or your institution to get full access on this article.

          Sign in
          • Published in

            cover image ACM Conferences
            ACM '74: Proceedings of the 1974 annual conference - Volume 1
            January 1974
            379 pages
            ISBN:9781450374828
            DOI:10.1145/800182

            Copyright © 1974 ACM

            Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

            Publisher

            Association for Computing Machinery

            New York, NY, United States

            Publication History

            • Published: 1 January 1974

            Permissions

            Request permissions about this article.

            Request Permissions

            Check for updates

            Qualifiers

            • Article

          PDF Format

          View or Download as a PDF file.

          PDF

          eReader

          View online with eReader.

          eReader