A Category-Based Framework for Privacy-Aware Collaborative Access Control

被引:1
|
作者
Obrezkov, Denis [1 ]
Sohr, Karsten [1 ]
Malaka, Rainer [1 ]
机构
[1] Univ Bremen, D-28359 Bremen, Germany
关键词
Usable security; Privacy; BYOD; Access control; CBAC;
D O I
10.1007/978-3-030-86586-3_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increased availability of portable devices with high computational power gave birth to such phenomenon as Bring Your Own Device (BYOD)-a situation when an employee uses his own device for accessing enterprise sensitive resources. This situation in turn created a new conflict-an employee wants to keep his data private, and an employer want to preserve the confidentiality of their sensitive resources. Since in case of BYOD both employees' and employers' data are stored on the employee's device, a problem of distributed and collaborative access control appears. In this paper we propose a novel framework for distributed systems with multiparty data ownership. The underlying formal model is based on the notion of Category-Based Access Control (CBAC). It is expanded with a concept of categories, representing a remote third-party policy decision point. The model is designed and evaluated against requirements for collaborative systems.
引用
收藏
页码:126 / 139
页数:14
相关论文
共 50 条
  • [1] A Semantic Framework for Privacy-Aware Access Control
    Lioudakis, Georgios V.
    Dellas, Nikolaos L.
    Koutsoloukas, Eleftherios A.
    Kapitsaki, Georgia M.
    Kaklamani, Dimitra I.
    Venieris, Iakovos S.
    2008 INTERNATIONAL MULTICONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY (IMCSIT), VOLS 1 AND 2, 2008, : 757 - 764
  • [2] The Category-Based Approach to Access Control, Obligations and Privacy
    Fernandez, Maribel
    PROCEEDINGS OF THE 28TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, SACMAT 2023, 2023, : 1 - 2
  • [3] Privacy-aware Role Based Access Control
    Ni, Qun
    Trombetta, Alberto
    Bertino, Elisa
    Lobo, Jorge
    SACMAT'07: PROCEEDINGS OF THE 12TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2007, : 41 - 50
  • [4] Privacy-aware collaborative access control in Web-based Social Networks
    Carminati, Barbara
    Ferrari, Elena
    DATA AND APPLICATIONS SECURITY XXII, 2008, 5094 : 81 - 96
  • [5] Privacy-Aware Role-Based Access Control
    Ni, Qun
    Bertino, Elisa
    Lobo, Jorge
    Calo, Seraphin B.
    IEEE SECURITY & PRIVACY, 2009, 7 (04) : 35 - 43
  • [6] Conditional privacy-aware role based access control
    Ni, Qun
    Lin, Dan
    Bertino, Elisa
    Lobo, Jorge
    COMPUTER SECURITY - ESORICS 2007, PROCEEDINGS, 2007, 4734 : 72 - +
  • [7] Privacy-Aware Role-Based Access Control
    Ni, Qun
    Bertino, Elisa
    Lobo, Jorge
    Brodie, Carolyn
    Karat, Clare-Marie
    Karat, John
    Trombetta, Alberto
    ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2010, 13 (03)
  • [8] A privacy-aware access control system
    Ardagna, C.
    Cremonini, M.
    di Vimercati, S.
    Samarati, P.
    JOURNAL OF COMPUTER SECURITY, 2008, 16 (04) : 369 - 397
  • [9] Access control in a privacy-aware eLearning environment
    Franz, Elke
    Wahrig, Hagen
    Boettcher, Alexander
    Borcea-Pfitzmann, Katrin
    FIRST INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2006, : 879 - +
  • [10] The architecture of a privacy-aware access control decision component
    Ardagna, Claudio A.
    Cremonini, Marco
    Damiani, Ernesto
    De Capitani di Vimercati, Sabrina
    Samarati, Pierangela
    CONSTRUCTION AND ANALYSIS OF SAFE, SECURE, AND INTEROPERABLE SMART DEVICES, 2006, 3956 : 1 - 15