Handling Authorization and Access Control for Asset Administration Shells in Dataspaces
データスペースにおけるアセット管理シェル(AAS)の認可とアクセス制御の取り扱い (AI 翻訳)
Fabian Zink, B. Wallner, T. Trautner
🤖 gxceed AI 要約
日本語
本論文は、Gaia-X準拠のデータスペースとAsset Administration Shell(AAS)を組み合わせた際の、サブモデルやプロパティレベルでのきめ細かい認可・アクセス制御の欠如に対処する。Open Policy Agent、Rego、BaSyx、NGINXなどのオープンソースを活用した属性ベースのアクセス制御層を提案し、鉄鋼製品のカーボンフットプリントデータのユースケースで検証している。
English
This paper addresses the lack of fine-grained authorization and access control at the submodel and property level when combining Gaia-X compliant dataspaces with Asset Administration Shells (AAS). It proposes an attribute-based access control layer using open-source tools like Open Policy Agent, Rego, BaSyx, and NGINX, validated through a carbon footprint data use case for a steel product.
Unofficial AI-generated summary based on the public title and abstract. Not an official translation.
📝 gxceed 編集解説 — Why this matters
日本のGX文脈において
日本では、カーボンフットプリントのデータ共有がサプライチェーン排出量算定に重要であり、本提案はAASを活用したデータ連携のセキュリティ確保に寄与する。SSBJ開示やScope3算定の実務において、データの信頼性とアクセス制御は重要な論点となる。
In the global GX context
Globally, as dataspaces and AAS gain traction for interoperable data exchange, this paper provides a technical solution for secure sharing of carbon footprint data, which is critical for Scope 3 accounting and ESG disclosure. It complements existing frameworks like TCFD and ISSB by enabling granular data access control.
👥 読者別の含意
🔬研究者:Provides a technical approach for fine-grained access control in dataspaces, relevant for researchers working on data-sharing infrastructure for sustainability.
🏢実務担当者:Offers a practical implementation blueprint for secure carbon data exchange, useful for corporate sustainability teams managing supply chain data.
🏛政策担当者:Highlights the need for standards in data authorization to support reliable carbon accounting and disclosure.
📄 Abstract(原文)
Gaia-X compliant dataspaces and Asset Administration Shells are increasingly applied together to enable secure and interoperable data exchange in various domains. While Gaia-X ensures participant authentication through its Trust Framework, it does not provide sufficient mechanisms for fine-grained authorization and access control, particularly when combined with the detailed structure of AAS submodels and properties. Existing specifications and research contributions recognize the importance of security, but they largely focus on authentication or define policies only at a coarse-grained level, leaving authorization at the submodel and property level insufficiently addressed. To close this gap, this paper proposes an authorization and access control layer at the interface between Gaia-X compliant dataspaces and AAS, enabling attribute-based, fine-grained access control. The approach leverages open-source frameworks and tools, including Open Policy Agent, Rego, BaSyx, and NGINX, for its realization. The proposed concept is validated through a conceptual use case involving carbon footprint data of a steel product.
🔗 Provenance — このレコードを発見したソース
- openalex https://doi.org/10.1016/j.procs.2026.02.383first seen 2026-08-02 17:21:58
🔔 こうした論文の新着を逃したくない方は キーワードアラート に登録(無料・3キーワードまで)。
gxceed は公開メタデータに基づく研究支援データセットです。要約・翻訳・解説は AI 支援で生成されています。 最終的な解釈・検証は利用者が原典資料に基づいて行うことを前提とします。