RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기

    XML 문서 소스를 위한 효율적인 접근 제어 관리 시스템

    한글로보기

    https://www.riss.kr/link?id=T11041912

    • 저자
    • 발행사항

      인천 : 인하대학교 공학대학원, 2007

    • 학위논문사항

      학위논문(박사) -- 인하대학교 공학대학원 , 정보공학과 , 2007. 8

    • 발행연도

      2007

    • 작성언어

      한국어

    • 주제어

      XML

    • DDC

      005.2 판사항(21)

    • 발행국(도시)

      인천

    • 형태사항

      viii, 111 p. ; 26cm

    • 일반주기명

      지도교수:유원희
      참고문헌

    • 소장기관
      • 인하대학교 도서관 소장기관정보
    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수

    부가정보

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    XML as a simplified dialect of SGML overcomes the limitations of HTML with a fixed set of tags and thereby allows its users to define their own document structures. In addition, this provides standardized data types taking a form of exchanging data generated during managing databases or operating applications in enterprises, by taking advantage of its merit that it can describe meaningful information by itself. Accordingly since there are increasing needs for the efficient management and security of the massive volume of XML data, it is necessary to develop a secure access control mechanism for XML.
    The existing access control has not taken information structures and semantics into full account due to the fundamental limitations of HTML. In addition, access control for XML documents allows only read operations, and there exists the problem of slowing down system performance due to the complex authorization evaluation process. Therefore in order to develop a XML access control technique, research on more simple and efficient evaluation engines are required.
    In order to resolve this problem, this paper designs and builds a XACMS(XML Access Control Management System) which is capable of making fined-grained access control. For this, it makes more fined-grained access control policies for XML documents than ones designed for HTML documents. And then, in developing an access control system, it describes the subject and object policies of authorization for XML document on which authorization levels should be specified and which access control should be performed. In addition, it is possible to specify authorization constraints for a single XML document and/or DTD. It proposes access authorization policies for XML documents for security, and describes authorization propagation rules and algorithms for XML access control. And also this paper introduces the use of authorization sheets related to DTD and each XML document, proposing the XACMS for XML documents.
    The XACMS is recognized by its flexibility, featuring its capability of supporting very fined-grained access protection levels. This provides data only corresponding to its users' authority levels by authorizing them to access only the specific items of XML documents when they're searching XML documents. In order to do this, the XACMS eliminates certain parts of documents which are inaccessible and transmits parts accessible depending on its users' authority levels. It adjusts smoothly the needs of the policy manager of an overall organization and a single document creator, taking owner of access authority for particular XML documents into consideration. Therefore this system can reduce authorization evaluation costs increased by complex and repetitive authorization evaluation practices in the existing access control mechanism.
    The proposed XACMS can be used in the environment which XML documents and structures maybe changed. In addition since XML documents are used on the basis of normal web sites, it can be expanded to existing web servers. As the result of experiments, the XACMS can alleviate the problem of slowing down system performance due to the complex authorization evaluation process in the existing access control techniques. Therefore this result indicated that the XACMS proposed in this paper are an improved system compared to existing access control practices.
    번역하기

    XML as a simplified dialect of SGML overcomes the limitations of HTML with a fixed set of tags and thereby allows its users to define their own document structures. In addition, this provides standardized data types taking a form of exchanging data ge...

    XML as a simplified dialect of SGML overcomes the limitations of HTML with a fixed set of tags and thereby allows its users to define their own document structures. In addition, this provides standardized data types taking a form of exchanging data generated during managing databases or operating applications in enterprises, by taking advantage of its merit that it can describe meaningful information by itself. Accordingly since there are increasing needs for the efficient management and security of the massive volume of XML data, it is necessary to develop a secure access control mechanism for XML.
    The existing access control has not taken information structures and semantics into full account due to the fundamental limitations of HTML. In addition, access control for XML documents allows only read operations, and there exists the problem of slowing down system performance due to the complex authorization evaluation process. Therefore in order to develop a XML access control technique, research on more simple and efficient evaluation engines are required.
    In order to resolve this problem, this paper designs and builds a XACMS(XML Access Control Management System) which is capable of making fined-grained access control. For this, it makes more fined-grained access control policies for XML documents than ones designed for HTML documents. And then, in developing an access control system, it describes the subject and object policies of authorization for XML document on which authorization levels should be specified and which access control should be performed. In addition, it is possible to specify authorization constraints for a single XML document and/or DTD. It proposes access authorization policies for XML documents for security, and describes authorization propagation rules and algorithms for XML access control. And also this paper introduces the use of authorization sheets related to DTD and each XML document, proposing the XACMS for XML documents.
    The XACMS is recognized by its flexibility, featuring its capability of supporting very fined-grained access protection levels. This provides data only corresponding to its users' authority levels by authorizing them to access only the specific items of XML documents when they're searching XML documents. In order to do this, the XACMS eliminates certain parts of documents which are inaccessible and transmits parts accessible depending on its users' authority levels. It adjusts smoothly the needs of the policy manager of an overall organization and a single document creator, taking owner of access authority for particular XML documents into consideration. Therefore this system can reduce authorization evaluation costs increased by complex and repetitive authorization evaluation practices in the existing access control mechanism.
    The proposed XACMS can be used in the environment which XML documents and structures maybe changed. In addition since XML documents are used on the basis of normal web sites, it can be expanded to existing web servers. As the result of experiments, the XACMS can alleviate the problem of slowing down system performance due to the complex authorization evaluation process in the existing access control techniques. Therefore this result indicated that the XACMS proposed in this paper are an improved system compared to existing access control practices.

    더보기

    국문 초록 (Abstract) kakao i 다국어 번역

    XML은 SGML에서의 복잡성을 제거하고 HTML에서의 고정된 태그의 한계에서 벗어나 사용자가 문서 구조를 정의할 수 있게 한다. 또한 스스로 의미 있는 정보를 기술할 수 있는 장점을 이용해 기업체의 데이터베이스나 응용 프로그램의 운영 중에 생기는 많은 데이터들에 대한 정보 교환 형태의 표준 데이터 타입을 제공한다. 이에 대용량 XML 데이터의 효율적인 관리와 보안의 필요성이 점차 중요시되고 있어 XML에 관한 안전한 접근 제어 기법을 개발하는 일이 필요하다.
    기존의 접근 제어는 HTML의 근본적인 한계 때문에 정보 구조와 의미론을 충분히 고려하지 못하였다. 또한 XML 문서에 대한 접근 제어는 읽기 실행만을 제공하며, 복잡한 권한의 평가 과정 때문에 시스템 성능이 저하되는 문제점이 존재한다. 따라서 XML 접근 제어 기법을 위해 보다 단순하고 효율적인 평가 엔진(evaluation engine)에 관한 연구 방법이 필요하다.
    이러한 문제점을 해결하기 위해 본 논문에서는 미세 접근 제어가 가능한 XACMS(XML Access Control Management System)를 설계하고 구축한다. 이를 위해 HTML 문서에 대해 고안된 것보다 미세한 XML 접근 제어 정책을 정의한다. 접근 제어 시스템을 개발함에 있어 어떤 권한부여를 명세하고 어떤 접근 제어를 실행해야 하는가와 관련하여 XML 문서 권한부여 주체와 객체 정책에 관하여 기술한다. 또한 단일 XML 문서나 DTD에 대해서도 권한부여를 명세할 수 있다. 보안을 위한 XML 접근 권한부여의 정책을 제안하고 효율적인 문서 관리를 위한 권한부여 전파 규칙과 XML 접근 제어 알고리즘을 기술한다. XML 문서를 위한 XACMS를 제안하고, DTD 및 각각의 XML 문서와 관련된 권한부여 시트 사용을 도입한다.
    XACMS는 아주 미세한 접근 보호 수준을 지원할 만큼 유연하다. XML 문서 검색에 있어서 사용자가 XML 문서의 특정 항목에만 접근할 수 있도록 권한을 부여함으로써, 사용자의 권한 범위에 해당하는 데이터만을 제공한다. 이를 위해서는 XML 문서로부터 사용자의 권한에 따라 권한이 허용되지 않는 부분은 제거하고 접근이 허가된 부분만을 전달한다. XACMS는 특정 XML 문서에서 누가 어떤 접근 권한을 실행할 것인가를 고려하면서 조직 전반에 걸친 정책 관리자와 단일 문서 작성자의 요구를 원만하게 조정한다. 그러므로 기존 접근 제어에서 복잡하고 반복적으로 수행되었던 권한 평가의 비용을 감소시킬 수 있다.
    제안한 XACMS는 XML 문서와 구조의 변경이 허용하는 환경에서도 지원된다. 또한 XML 문서는 보통 웹 사이트 기반으로 사용되고 있으므로 기존의 웹 서버에 확장도 가능하다. 실험 결과, XACMS는 기존의 접근 제어 기술에서 복잡한 권한의 평가 과정으로 시스템 성능이 저하되는 문제점을 개선시켰다. 따라서 본 논문에서 제안한 XACMS가 기존의 접근 제어 방법보다 향상되었음을 보여주었다.
    번역하기

    XML은 SGML에서의 복잡성을 제거하고 HTML에서의 고정된 태그의 한계에서 벗어나 사용자가 문서 구조를 정의할 수 있게 한다. 또한 스스로 의미 있는 정보를 기술할 수 있는 장점을 이용해 기업...

    XML은 SGML에서의 복잡성을 제거하고 HTML에서의 고정된 태그의 한계에서 벗어나 사용자가 문서 구조를 정의할 수 있게 한다. 또한 스스로 의미 있는 정보를 기술할 수 있는 장점을 이용해 기업체의 데이터베이스나 응용 프로그램의 운영 중에 생기는 많은 데이터들에 대한 정보 교환 형태의 표준 데이터 타입을 제공한다. 이에 대용량 XML 데이터의 효율적인 관리와 보안의 필요성이 점차 중요시되고 있어 XML에 관한 안전한 접근 제어 기법을 개발하는 일이 필요하다.
    기존의 접근 제어는 HTML의 근본적인 한계 때문에 정보 구조와 의미론을 충분히 고려하지 못하였다. 또한 XML 문서에 대한 접근 제어는 읽기 실행만을 제공하며, 복잡한 권한의 평가 과정 때문에 시스템 성능이 저하되는 문제점이 존재한다. 따라서 XML 접근 제어 기법을 위해 보다 단순하고 효율적인 평가 엔진(evaluation engine)에 관한 연구 방법이 필요하다.
    이러한 문제점을 해결하기 위해 본 논문에서는 미세 접근 제어가 가능한 XACMS(XML Access Control Management System)를 설계하고 구축한다. 이를 위해 HTML 문서에 대해 고안된 것보다 미세한 XML 접근 제어 정책을 정의한다. 접근 제어 시스템을 개발함에 있어 어떤 권한부여를 명세하고 어떤 접근 제어를 실행해야 하는가와 관련하여 XML 문서 권한부여 주체와 객체 정책에 관하여 기술한다. 또한 단일 XML 문서나 DTD에 대해서도 권한부여를 명세할 수 있다. 보안을 위한 XML 접근 권한부여의 정책을 제안하고 효율적인 문서 관리를 위한 권한부여 전파 규칙과 XML 접근 제어 알고리즘을 기술한다. XML 문서를 위한 XACMS를 제안하고, DTD 및 각각의 XML 문서와 관련된 권한부여 시트 사용을 도입한다.
    XACMS는 아주 미세한 접근 보호 수준을 지원할 만큼 유연하다. XML 문서 검색에 있어서 사용자가 XML 문서의 특정 항목에만 접근할 수 있도록 권한을 부여함으로써, 사용자의 권한 범위에 해당하는 데이터만을 제공한다. 이를 위해서는 XML 문서로부터 사용자의 권한에 따라 권한이 허용되지 않는 부분은 제거하고 접근이 허가된 부분만을 전달한다. XACMS는 특정 XML 문서에서 누가 어떤 접근 권한을 실행할 것인가를 고려하면서 조직 전반에 걸친 정책 관리자와 단일 문서 작성자의 요구를 원만하게 조정한다. 그러므로 기존 접근 제어에서 복잡하고 반복적으로 수행되었던 권한 평가의 비용을 감소시킬 수 있다.
    제안한 XACMS는 XML 문서와 구조의 변경이 허용하는 환경에서도 지원된다. 또한 XML 문서는 보통 웹 사이트 기반으로 사용되고 있으므로 기존의 웹 서버에 확장도 가능하다. 실험 결과, XACMS는 기존의 접근 제어 기술에서 복잡한 권한의 평가 과정으로 시스템 성능이 저하되는 문제점을 개선시켰다. 따라서 본 논문에서 제안한 XACMS가 기존의 접근 제어 방법보다 향상되었음을 보여주었다.

    더보기

    목차 (Table of Contents)

    • 제 1 장 서론 = 1
    • 1.1 연구 배경 = 1
    • 1.2 연구 범위 및 구성 = 8
    • 제 2 장 관련 연구 = 12
    • 2.1 XML = 12
    • 제 1 장 서론 = 1
    • 1.1 연구 배경 = 1
    • 1.2 연구 범위 및 구성 = 8
    • 제 2 장 관련 연구 = 12
    • 2.1 XML = 12
    • 2.2 DOM 기술 = 19
    • 2.3 XML 기반 접근 제어 = 22
    • 2.4 DOM 기반의 XML 접근 제어 = 32
    • 제 3 장 XML 문서들을 위한 접근 제어 정책 설계 = 42
    • 3.1 XML 접근 제어 정의 = 42
    • 3.2 XML 문서 권한부여 주체 정책 = 46
    • 3.3 XML 문서 보안 권한부여 객체 정책 = 50
    • 3.4 안전한 접근 권한부여의 명세화 = 53
    • 제 4 장 효율적인 문서 관리를 위한 접근 권한부여 메커니즘 = 59
    • 4.1 권한부여 전파 규칙 정책 = 59
    • 4.2 XML 접근 제어 관리 알고리즘 = 64
    • 4.3 접근 제어 시스템 비교 = 71
    • 제 5 장 XML 접근 제어 시스템의 설계 및 실험 = 75
    • 5.1 접근 제어 시스템의 설계 = 75
    • 5.2 접근 제어 평가 고찰 = 89
    • 5.3 접근 제어 성능 평가 = 94
    • 제 6 장 결론 및 향후 연구과제 = 100
    • 참고문헌 = 103
    더보기

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼