7 CONCLUSIONS AND FURTHER
WORK
In this paper we presented a user interface that enables
non-expert users to control the access to their RDF-
based user profiles. We used the policy framework
Protune to enforce the underlying access control layer
and outlined how to use policy templates to define ac-
cess control policies. Furthermore, we discussed how
to deal with conflicting policies and how a user inter-
face helps to understand complex and expressive poli-
cies and their consequences. We presented the current
implementation of the proposed user interface. In the
future we will evaluate the user interface by testing its
usability. This includes to check whether a user will
be able to express his intention and whether he can be
made aware of the consequences of his policies.
REFERENCES
Abel, F., Baumgartner, R., Brooks, A., Enzi, C., Gottlob,
G., Henze, N., Herzog, M., Kriesell, M., Nejdl, W.,
and Tomaschewski, K. (2005). The personal publi-
cation reader, semantic web challenge 2005. In 4th
International Semantic Web Conference.
Abel, F., Coi, J. L. D., Henze, N., Koesling, A. W., Krause,
D., and Olmedilla, D. (2007). Enabling advanced and
context-dependent access control in rdf stores. In 6th
International Semantic Web Conference, pages 1–14.
Baader, F., Calvanese, D., McGuinness, D. L., Nardi, D.,
and Patel-Schneider, P. F., editors (2003). The De-
scription Logic Handbook: Theory, Implementation,
and Applications. Cambridge University Press.
Bonatti, P. A. and Olmedilla, D. (2005a). Driving and moni-
toring provisional trust negotiation with metapolicies.
In 6th IEEE International Workshop on Policies for
Distributed Systems and Networks (POLICY 2005),
pages 14–23, Stockholm, Sweden. IEEE Computer
Society.
Bonatti, P. A. and Olmedilla, D. (2005b). Policy language
specification. Technical report, Working Group I2, EU
NoE REWERSE.
Bonatti, P. A. and Samarati, P. (2000). Regulating service
access and information release on the web. In ACM
Conference on Computer and Communications Secu-
rity, pages 134–143.
Dietzold, S. and Auer, S. (2006). Access control on rdf
triple stores from a semantic wiki perspective. In
Scripting for the Semantic Web Workshop at 3rd Eu-
ropean Semantic Web Conference (ESWC).
Gavriloaie, R., Nejdl, W., Olmedilla, D., Seamons, K. E.,
and Winslett, M. (2004). No registration needed: How
to use declarative policies and negotiation to access
sensitive resources on the semantic web. In 1st Euro-
pean Semantic Web Symposium (ESWS 2004), volume
3053 of Lecture Notes in Computer Science, Herak-
lion, Crete, Greece. Springer.
Henze, N. (2005). Personalization services for the seman-
tic web: The personal reader framework. In Frame-
work 6 Project Collaboration for the Future Semantic
Web Workshop at European Semantic Web Conference
ESWC 2005, Heraklion, Greece.
Henze, N. and Krause, D. (2006). Personalized access to
web services in the semantic web. In SWUI 2006 - 3rd
International Semantic Web User Interaction Work-
shop, Athens, Georgia, USA.
Kagal, L., Finin, T. W., and Joshi, A. (2003). A pol-
icy language for a pervasive computing environment.
In 4th IEEE International Workshop on Policies for
Distributed Systems and Networks (POLICY), Lake
Como, Italy. IEEE Computer Society.
Lloyd, J. W. (1987). Foundations of Logic Programming,
2nd Edition. Springer.
Uszok, A., Bradshaw, J. M., Jeffers, R., Suri, N., Hayes,
P. J., Breedy, M. R., Bunch, L., Johnson, M., Kulka-
rni, S., and Lott, J. (2003). Kaos policy and do-
main services: Toward a description-logic approach
to policy representation, deconfliction, and enforce-
ment. In 4th IEEE International Workshop on Poli-
cies for Distributed Systems and Networks (POLICY),
Lake Como, Italy. IEEE Computer Society.
Uszok, A., Bradshaw, J. M., Johnson, M., Jeffers, R., Tate,
A., Dalton, J., and Aitken, S. (2004). Kaos policy
management for semantic web services. IEEE Intelli-
gent Systems, 19(4):32–41.
A USER INTERFACE TO DEFINE AND ADJUST POLICIES FOR DYNAMIC USER MODELS
191