A privacy-aware access control system

被引:56
|
作者
Ardagna, C. [1 ]
Cremonini, M. [1 ]
di Vimercati, S. [1 ]
Samarati, P. [1 ]
机构
[1] Univ Milan, Dipartimento Tecnol Informaz, Via Bramante 65, I-26013 Crema, Italy
关键词
Access control; privacy; data handling policies;
D O I
10.3233/JCS-2008-0328
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The protection of privacy is an increasing concern in our networked society because of the growing amount of personal information that is being collected by a number of commercial and public services. Emerging scenarios of user-service interactions in the digital world are then pushing toward the development of powerful and flexible privacy-aware models and languages. This paper aims at introducing concepts and features that should be investigated to fulfill this demand. We identify different types of privacy-aware policies: access control, release and data handling policies. The access control policies govern access/release of data/services managed by the party (as in traditional access control), and release policies govern release of personal identifiable information (PII) of the party and specify under which conditions it can be disclosed. The data handling policies allow users to specify and communicate to other parties the policy that should be enforced to deal with their data. We also discuss how data handling policies can be integrated with traditional access control systems and present a privacy control module in charge of managing, integrating, and evaluating access control, release and data handling policies.
引用
收藏
页码:369 / 397
页数:29
相关论文
共 50 条
  • [41] An Efficient Privacy-Aware Authentication Scheme With Hierarchical Access Control for Mobile Cloud Computing Services
    Xiong, Ling
    Li, Fagen
    He, Mingxing
    Liu, Zhicai
    Peng, Tu
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2022, 10 (04) : 2309 - 2323
  • [42] Application of Privacy-aware Role-based Access Control Model in IHE-XDS
    Dauletbek, Daniya
    Yuan, Shi-Zhong
    4TH ANNUAL INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND APPLICATIONS (ITA 2017), 2017, 12
  • [43] Packet:a privacy-aware access control policy composition method for services composition in cloud environments
    Li LIN
    Jian HU
    Jianbiao ZHANG
    Frontiers of Computer Science, 2016, 10 (06) : 1142 - 1157
  • [44] Privacy-Aware Access Control in IoT-Enabled Healthcare: A Federated Deep Learning Approach
    Lin, Hui
    Kaur, Kuljeet
    Wang, Xiaoding
    Kaddoum, Georges
    Hu, Jia
    Hassan, Mohammad Mehedi
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (04) : 2893 - 2902
  • [45] Packet: a privacy-aware access control policy composition method for services composition in cloud environments
    Li Lin
    Jian Hu
    Jianbiao Zhang
    Frontiers of Computer Science, 2016, 10 : 1142 - 1157
  • [46] PriGuarder: A Privacy-Aware Access Control Approach Based on Attribute Fuzzy Grouping in Cloud Environments
    Lin, Li
    Liu, Ting-Ting
    Li, Shuang
    Magurawalage, Chathura M. Sarathchandra
    Tu, Shan-Shan
    IEEE ACCESS, 2018, 6 : 1882 - 1893
  • [47] Packet: a privacy-aware access control policy composition method for services composition in cloud environments
    Lin, Li
    Hu, Jian
    Zhang, Jianbiao
    FRONTIERS OF COMPUTER SCIENCE, 2016, 10 (06) : 1142 - 1157
  • [48] Blockchain-Based Privacy-Aware Voting System
    Isra Bendjemaa
    Katia Ines Cherifi
    Leila Benarous
    Saadi Boudjit
    SN Computer Science, 5 (8)
  • [49] A Privacy-Aware PKI System Based on Permissioned Blockchains
    Wang, Rong
    He, Juan
    Liu, Can
    Li, Qi
    Tsai, Wei-Tek
    Deng, Enyan
    PROCEEDINGS OF 2018 IEEE 9TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE (ICSESS), 2018, : 928 - 931
  • [50] Privacy-aware Remote Monitoring System by Skeleton Recognition
    Nitta, Yoshihisa
    Murayama, Yuko
    PROCEEDINGS OF THE 52ND ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES, 2019, : 582 - 589