A Category-Based Framework for Privacy-Aware Collaborative Access Control

被引:1
|
作者
Obrezkov, Denis [1 ]
Sohr, Karsten [1 ]
Malaka, Rainer [1 ]
机构
[1] Univ Bremen, D-28359 Bremen, Germany
来源
TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS (TRUSTBUS 2021) | 2021年 / 12927卷
关键词
Usable security; Privacy; BYOD; Access control; CBAC;
D O I
10.1007/978-3-030-86586-3_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increased availability of portable devices with high computational power gave birth to such phenomenon as Bring Your Own Device (BYOD)-a situation when an employee uses his own device for accessing enterprise sensitive resources. This situation in turn created a new conflict-an employee wants to keep his data private, and an employer want to preserve the confidentiality of their sensitive resources. Since in case of BYOD both employees' and employers' data are stored on the employee's device, a problem of distributed and collaborative access control appears. In this paper we propose a novel framework for distributed systems with multiparty data ownership. The underlying formal model is based on the notion of Category-Based Access Control (CBAC). It is expanded with a concept of categories, representing a remote third-party policy decision point. The model is designed and evaluated against requirements for collaborative systems.
引用
收藏
页码:126 / 139
页数:14
相关论文
共 50 条
  • [11] Scalable Access Control For Privacy-Aware Media Sharing
    Ma, Changsha
    Yan, Zhisheng
    Chen, Chang Wen
    IEEE TRANSACTIONS ON MULTIMEDIA, 2019, 21 (01) : 173 - 183
  • [12] Hybrid Enforcement of Category-Based Access Control
    Ali, Asad
    Fernandez, Maribel
    SECURITY AND TRUST MANAGEMENT (STM 2014), 2014, 8743 : 178 - 182
  • [13] Category-Based Administrative Access Control Policies
    Bertolissi, Clara
    Fernandez, Maribel
    Thuraisingham, Bhavani
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2025, 28 (01)
  • [14] Privacy-Aware Collaborative Spam Filtering
    Li, Kang
    Zhong, Zhenyu
    Ramaswamy, Lakshmish
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2009, 20 (05) : 725 - 739
  • [15] Hybrid enforcement of category-based access control
    Ali, Asad
    Fernández, Maribel
    Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 2014, 8743 : 178 - 182
  • [16] Multi-domain and Privacy-aware Role Based Access Control in eHealth
    Martino, Lorenzo D.
    Ni, Qun
    Lin, Dan
    Bertino, Elisa
    2008 2ND INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING TECHNOLOGIES FOR HEALTHCARE, 2008, : 123 - 126
  • [17] Purpose fusion: The risk purpose based privacy-aware data access control
    Liu Y.-M.
    Zhou H.-F.
    Wang Z.-H.
    Wang W.
    Jisuanji Xuebao/Chinese Journal of Computers, 2010, 33 (08): : 1339 - 1348
  • [18] A privacy-aware continuous authentication scheme for proximity-based access control
    Agudo, Isaac
    Rios, Ruben
    Lopez, Javier
    COMPUTERS & SECURITY, 2013, 39 : 117 - 126
  • [19] A Privacy-aware Graph-based Access Control System for the Healthcare Domain
    Tian, Yuan
    Song, Biao
    Hassan, M. Mehedi
    Huh, Eui-Nam
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2012, 6 (10): : 2708 - 2730
  • [20] Risk-Based Privacy-Aware Access Control for Threat Detection Systems
    Metoui, Nadia
    Bezzi, Michele
    Armando, Alessandro
    TRANSACTIONS ON LARGE-SCALE DATA- AND KNOWLEDGECENTERED SYSTEMS XXXVI: SPECIAL ISSUE ON DATA AND SECURITY ENGINEERING, 2018, 10720 : 1 - 30