JOURNAL ARTICLE

End-to-End Database Software Security

Abstract

End-to-end security is essential for relational database software. Most database management software provide data protection at the server side and in transit, but data are no longer protected once they arrive at the client software. In this paper, we present a methodology that, in addition to server-side security, protects data in transit and at rest on the application client side. Our solution enables flexible attribute-based and role-based access control, such that, for a given role or user with a given set of attributes, access can be granted to a relation, a column, or even to a particular data cell of the relation, depending on the data content. Our attribute-based access control model considers the client’s attributes, such as versions of the operating system and the web browser, as well as type of the client’s device. The solution supports decentralized data access and peer-to-peer data sharing in the form of an encrypted and digitally signed spreadsheet container that stores data retrieved by SQL queries from a database, along with data privileges. For extra security, keys for data encryption and decryption are generated on the fly. We show that our solution is successfully integrated with the PostgreSQL® database management system and enables more flexible access control for added security.

Keywords:
Computer science Database Encryption Data security Access control Data access Database security Computer security

Metrics

4
Cited By
1.02
FWCI (Field Weighted Citation Impact)
18
Refs
0.75
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Cryptography and Data Security
Physical Sciences →  Computer Science →  Artificial Intelligence
Access Control and Trust
Social Sciences →  Social Sciences →  Sociology and Political Science
Cloud Data Security Solutions
Physical Sciences →  Computer Science →  Information Systems

Related Documents

JOURNAL ARTICLE

Software-defined security controller-based end-to-end packet key security management

Younchan JungMarnel PeradillaRonnel Agulto

Journal:   Procedia Computer Science Year: 2019 Vol: 155 Pages: 89-96
JOURNAL ARTICLE

Software-defined security controller-based group management and end-to-end security management

Enrique D. FestijoYounchan JungMarnel Peradilla

Journal:   Journal of Ambient Intelligence and Humanized Computing Year: 2018 Vol: 10 (9)Pages: 3365-3382
BOOK-CHAPTER

end-to-end security

Martin H. Weik

Year: 2000 Pages: 522-522
JOURNAL ARTICLE

End-to-end Information Flow Security Model for Software-Defined Networks

D. Ju. ChalyЕ. С. НикитинE. Ju. AntoshinaВ. А. Соколов

Journal:   Modeling and Analysis of Information Systems Year: 2016 Vol: 22 (6)Pages: 735-749
© 2026 ScienceGate Book Chapters — All rights reserved.