University of Illinois at Urbana-Champaign
Access Control for Client-Server Object Databases
Abstract
dc:descriptionThis thesis shows how to obtain efficient, fine-grained (object-level) control over user access to ODB data. We present a target access control model for ODB applications and delineate the trust assumptions required for providing such access control in client-server environments. The prototype implementations of our approach achieve very low overhead while providing object-level access control. By implementing our approach to access control for two major ODB architectures and measuring the resulting prototype's performance on standard ODB benchmarks, we show that when an application is entitled to access all the data it attempts to access, fine-grained access control is achievable with a run-time performance penalty of less than 15%. As the number attempts to access data the application is unauthorized to access increases, performance degrades gracefully. These results demonstrate that fine-grained access controls in ODBs are feasible without the order of magnitude performance degradation--effectively a functional difference--anticipated by the ODB community.
Degree
thesis:*- Name thesis:degree_name
- Ph.D.
- Level thesis:degree_level
- Dissertation
- Discipline thesis:degree_discipline
- Computer Science
- Grantor
- University of Illinois at Urbana-Champaign
- Year dc:date
- 2015
Author and committee
dc:creator, dc:contributor.*- Author dc:creator
-
- Jones, Vicki Ellen
- Contributors dc:contributor
-
- Winslett, Marianne
Subjects
dc:subject × 1Rights
- Language dc:language
- eng
Identifiers
dc:identifier.*- Identifier
- (MiAaPQ)AAI9737149
- OAI identifier oai:identifier
- oai:www.ideals.illinois.edu:2142/81880