Hong et al., 2026 - Google Patents

HBAC: Hierarchical‐Based Access Control Model for Storage Management in Data Lake Environments

Hong et al., 2026

Document ID
12259248772599116872
Author
Hong Y
Gil M
Lee S
Moon Y
Publication year
Publication venue
Software: Practice and Experience

External Links

Snippet

Background Traditional storage systems typically use simple access control models that manage permissions at the user or group level. These models, however, are not well suited for data lake environments, where large‐scale and diverse datasets must be accessed …
Continue reading at onlinelibrary.wiley.com (other versions)

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6209Protecting access to data via a platform, e.g. using keys or access control rules to a single file or object, e.g. in a secure envelope, encrypted and accessed using a key, or with access control rules appended to the object itself
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F17/00Digital computing or data processing equipment or methods, specially adapted for specific functions
    • G06F17/30Information retrieval; Database structures therefor; File system structures therefor
    • G06F17/30067File systems; File servers
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/604Tools and structures for managing or administering access control systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/06Digital input from or digital output to record carriers, e.g. RAID, emulated record carriers, networked record carriers
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for programme control, e.g. control unit
    • G06F9/06Arrangements for programme control, e.g. control unit using stored programme, i.e. using internal store of processing equipment to receive and retain programme
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures

Similar Documents

Publication Publication Date Title
US8365254B2 (en) Unified authorization for heterogeneous applications
US8402514B1 (en) Hierarchy-aware role-based access control
US9053302B2 (en) Obligation system for enterprise environments
US6233576B1 (en) Enhanced security for computer system resources with a resource access authorization control facility that creates files and provides increased granularity of resource permission
CN111935131A (en) SaaS resource access control method based on resource authority tree
US20060294051A1 (en) Uniform access to entities in registered data store services
JP2024536689A (en) Data management and governance system and method
US8181243B2 (en) Computer readable medium for resolving permission for role activation operators
US20120131646A1 (en) Role-based access control limited by application and hostname
US20120185911A1 (en) Mlweb: a multilevel web application framework
EP2021935A1 (en) Translating role-based access control policy to resource authorization policy
US8819231B2 (en) Domain based management of partitions and resource groups
Dindoliwala et al. Survey on Security Mechanisms In NoSQL Databases.
CN115514506A (en) Cloud platform resource management method, device and readable storage medium
Hong et al. HBAC: Hierarchical‐Based Access Control Model for Storage Management in Data Lake Environments
WO2018057881A1 (en) Different hierarchies of resource data objects for managing system resources
Liu et al. A Multi-Tenant Usage Access Model for Cloud Computing.
US7653934B1 (en) Role-based access control
Chang et al. MD-UCON: A multi-domain access control model for SDN northbound interfaces
US20250384152A1 (en) Inheritance-based access rights governance
US20130046720A1 (en) Domain based user mapping of objects
Scaglioso et al. Modern standard-based access control in network services: XACML in action
Zou et al. Multi-tenancy access control strategy for cloud services
Asthana et al. Proposed L-shape pattern on UFS ACM for risk analysis
Ma et al. Study on access control for cloud storage security