Static analysis of XML security views and query rewriting
Static analysis of XML security views and query rewriting
复制标题
XML安全视图的静态分析和查询重写
DOI:
10.1016/j.ic.2014.07.003
复制
发表时间:
2014
期刊:
影响因子:
--
通讯作者:
S. Tison
中科院分区:
文献类型:
--
作者:
Benoît Groz;Slawomir Staworko;Anne;Yves Roos;S. Tison
In this paper, we revisit the view based security framework for XML without imposing any of the previously considered restrictions on the class of queries, the class of DTDs, and the type of annotations used to define the view. First, we studyquery rewritingwith views when the classes used to define queries and views are Regular XPath and MSO. Next, we investigate problems ofstatic analysisof security access specifications (SAS): we introduce the novel class ofinterval-boundedSAS and we define three different manners to compare views (i.e. queries) from a security point of view. We provide a systematic study of the complexity for deciding these three comparisons, when the depth of the XML documents is bounded, when the document may have an arbitrary depth but the queries defining the views are restricted to guarantee the interval-bounded property, and in the general setting without restriction on queries and document.