Title
On Usage Control In Relational Database Management Systems Obligations And Their Enforcement In Joining Datasets
Abstract
When datasets are collected and accessed legitimately, they must still be used appropriately according to policies, guidelines, rules, laws, and/or the (current) preferences of data subjects. Any inconsistency between the data collection and data usage processes can conflict with many principles of privacy like the transparency principle, no secondary use principle, or intended purpose usage principle. In this contribution we show how the usage control for the inner join operation in vertically separated relational datasets can be characterized as pre and post obligations of the Usage Control (UCON) model. This type of obligations is defined not only by the state of the UCON object (i.e., a dataset) itself, but also with respect to the state of another dataset. Such dependency on two datasets/objects provides a new insight in UCON obligation constructs when applied to the join operation. We describe also a mechanism to realize the identified obligation in a database management system and present an example realization of the proposed mechanism. Furthermore, we enlist a number of methods to determine whether two given datasets can be joined.
Year
DOI
Venue
2017
10.5220/0006209801900201
ICISSP: PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY
Keywords
Field
DocType
Access Control, Inner Join, Obligations, Privacy, Usage Control
Data collection,Transparency (graphic),Data mining,Obligation,Computer science,Enforcement,Relational database management system,Database
Conference
Citations 
PageRank 
References 
1
0.35
0
Authors
3
Name
Order
Citations
PageRank
Mortaza S. Bargh119921.12
Marco Vink211.03
Sunil Choenni3309111.82