An access and inference control model for time series databases

Noury, A ; Sharif University of Technology | 2019

254 Viewed
  1. Type of Document: Article
  2. DOI: 10.1016/j.future.2018.09.057
  3. Publisher: Elsevier B.V , 2019
  4. Abstract:
  5. Today, many applications produce and use time series data. The data of this type may contain sensitive information. So they should be protected against unauthorized accesses. In this paper, security issues of time series data are identified and an access and inference control model for satisfying the identified security requirements is proposed. Using this model, administrators can define authorization rules based on various time-based granularities (e.g. day or month) and apply value-based constraints over the accessed times series data. Furthermore, they can define policy rules over the composition of multiple time-series other than the base time-series data. Detecting and resolving different types of conflicts between the simple, aggregation, or composition access rules over the time series data is a challenging issue which is investigated in this paper. Detecting explicit and implicit conflicts in this model prevents information inference from hierarchical time series data. To prove the applicability of the model, a reference monitor based on the proposed model has been implemented as a secure access layer on top of OpenTSDB (a time series database). Our evaluation shows that the overhead imposed on queries by the secure access layer depends on several parameters such as class of query, number of authorization rules, complexity of value constraints, and number of data being accessed. In our experiments, the overhead was variable in the range of 4% in the best case to 184% in the worst case. © 2018 Elsevier B.V
  6. Keywords:
  7. Information security ; Time-series database ; Database systems ; Query processing ; Security of data ; Time series ; Authorization rules ; Inference control ; Multiple time series ; Security requirements ; Sensitive informations ; Temporal data ; Time series database ; Unauthorized access ; Access control
  8. Source: Future Generation Computer Systems ; Volume 92 , 2019 , Pages 93-108 ; 0167739X (ISSN)
  9. URL: https://www.sciencedirect.com/science/article/abs/pii/S0167739X18306757