Privacy Preserving Access Control in Service-Oriented Architecture

被引:5
|
作者
Ranchal, Rohit [1 ]
Bhargava, Bharat [2 ]
Fernando, Ruchith [2 ]
Lei, Hui [1 ]
Jin, Zhongjun [3 ]
机构
[1] IBM Corp, Watson Hlth Cloud, Cambridge, MA 02142 USA
[2] Purdue Univ, Comp Sci, W Lafayette, IN USA
[3] Univ Michigan, Comp Sci & Engn, Ann Arbor, MI USA
关键词
service-oriented architecture; composite services; policy enforcement; active bundle; privacy; access control; WEB SERVICES;
D O I
10.1109/ICWS.2016.60
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Service-oriented Architecture (SOA) comprises a number of loosely-coupled independent services, which collaborate, interact and share data to accomplish incoming requests. A service invocation can involve multiple services, where each service accesses, processes and shares the client's data. These interactions may share data with unauthorized services and violate client's privacy. The client has no means of identifying if a violation occurred because it has no control over the service invocations beyond its trust domain. Such interactions introduce new security challenges which are not present in traditional systems. This paper proposes a data-centric approach for privacy preserving access control in SOA. Benefits of the proposed approach include the ability to dynamically define access polices by the clients and control data access at the time of each service interaction. A realistic healthcare scenario is used to evaluate the implementation of the proposed solution which validates its viability.
引用
下载
收藏
页码:412 / 419
页数:8
相关论文
共 50 条
  • [31] Tactical service-oriented architecture
    Gohde, Johnathan
    Griffin, Peter
    Rickenbach, Brent
    Rush, Jason
    DEFENSE TRANSFORMATION AND NET-CENTRIC SYSTEMS 2008, 2008, 6981
  • [32] Service-oriented Architecture in Business
    Xin, Chen
    2009 ISECS INTERNATIONAL COLLOQUIUM ON COMPUTING, COMMUNICATION, CONTROL, AND MANAGEMENT, VOL IV, 2009, : 521 - 524
  • [33] Service-oriented software architecture for flexible manufacturing control system
    Wu, Bin
    Xi, Li-feng
    Zhou, Bing-hai
    2006 IEEE INTERNATIONAL CONFERENCE ON AUTOMATION SCIENCE AND ENGINEERING, VOLS 1 AND 2, 2006, : 425 - +
  • [34] Privacy Preserving Delegated Access Control in the Storage as a Service Model
    Nabeel, Mohamed
    Bertino, Elisa
    2012 IEEE 13TH INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION (IRI), 2012, : 645 - 652
  • [35] A novel service-oriented AAA architecture
    He, R
    Yuan, M
    Hu, JP
    Zhang, H
    Kan, ZG
    Ma, J
    PIMRC 2003: 14TH IEEE 2003 INTERNATIONAL SYMPOSIUM ON PERSONAL, INDOOR AND MOBILE RADIO COMMUNICATIONS PROCEEDINGS, VOLS 1-3 2003, 2003, : 2833 - 2837
  • [36] A new approach for service-oriented architecture
    Talaei-Khoei, A
    Sheriffian, AH
    Akbari, MK
    Verdom, JF
    Enabling Technologies for the New Knowledge Society, 2005, : 459 - 470
  • [37] A Service-Oriented Architecture for Networked Highway
    Li, Haifeng
    CEIS 2011, 2011, 15
  • [38] Service-oriented architecture and Web 2.0
    Howerton, Jared T.
    IT Professional, 2007, 9 (03) : 62 - 64
  • [39] DBNet: A service-oriented database architecture
    Tok, Wee Hyong
    Bressan, Stephane
    SEVENTEENTH INTERNATIONAL CONFERENCE ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2006, : 727 - +
  • [40] Service-Oriented Architecture for Smart Environments
    Degeler, Viktoriya
    Gonzalez, Luis I. Lopera
    Leva, Mariano
    Shrubsole, Paul
    Bonomi, Silvia
    Amft, Oliver
    Lazovik, Alexander
    2013 IEEE SIXTH INTERNATIONAL CONFERENCE ON SERVICE-ORIENTED COMPUTING AND APPLICATIONS (SOCA), 2013, : 99 - 104