A Category-Based Framework for Privacy-Aware Collaborative Access Control

被引:1
|
作者
Obrezkov, Denis [1 ]
Sohr, Karsten [1 ]
Malaka, Rainer [1 ]
机构
[1] Univ Bremen, D-28359 Bremen, Germany
来源
TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS (TRUSTBUS 2021) | 2021年 / 12927卷
关键词
Usable security; Privacy; BYOD; Access control; CBAC;
D O I
10.1007/978-3-030-86586-3_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increased availability of portable devices with high computational power gave birth to such phenomenon as Bring Your Own Device (BYOD)-a situation when an employee uses his own device for accessing enterprise sensitive resources. This situation in turn created a new conflict-an employee wants to keep his data private, and an employer want to preserve the confidentiality of their sensitive resources. Since in case of BYOD both employees' and employers' data are stored on the employee's device, a problem of distributed and collaborative access control appears. In this paper we propose a novel framework for distributed systems with multiparty data ownership. The underlying formal model is based on the notion of Category-Based Access Control (CBAC). It is expanded with a concept of categories, representing a remote third-party policy decision point. The model is designed and evaluated against requirements for collaborative systems.
引用
收藏
页码:126 / 139
页数:14
相关论文
共 50 条
  • [21] Privacy-aware access control with trust management in web service
    Li, Min
    Sun, Xiaoxun
    Wang, Hua
    Zhang, Yanchun
    Zhang, Ji
    WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS, 2011, 14 (04): : 407 - 430
  • [22] A privacy-aware access control model for distributed network monitoring
    Papagiannakopoulou, Eugenia I.
    Koukovini, Maria N.
    Lioudakis, Georgios V.
    Garcia-Alfaro, Joaquin
    Kaklamani, Dimitra I.
    Venieris, Iakovos S.
    Cuppens, Frederic
    Cuppens-Boulahia, Nora
    COMPUTERS & ELECTRICAL ENGINEERING, 2013, 39 (07) : 2263 - 2281
  • [23] An aspect-oriented approach to privacy-aware access control
    Chen, Kung
    Wang, Da-Wei
    PROCEEDINGS OF 2007 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2007, : 3016 - +
  • [24] Creating a Privacy-aware framework for fine-grained Data Access
    Salant, Eliot
    ERCIM NEWS, 2023, (133): : 16 - 17
  • [25] Privacy query rewriting algorithm instrumented by a privacy-aware access control model
    Oulmakhzoune, Said
    Cuppens-Boulahia, Nora
    Cuppens, Frederic
    Morucci, Stephane
    Barhamgi, Mahmoud
    Benslimane, Djamal
    ANNALS OF TELECOMMUNICATIONS, 2014, 69 (1-2) : 3 - 19
  • [26] Privacy query rewriting algorithm instrumented by a privacy-aware access control model
    Said Oulmakhzoune
    Nora Cuppens-Boulahia
    Frédéric Cuppens
    Stéphane Morucci
    Mahmoud Barhamgi
    Djamal Benslimane
    annals of telecommunications - annales des télécommunications, 2014, 69 : 3 - 19
  • [27] Assurance, Consent and Access Control for Privacy-Aware OIDC Deployments
    Sassetti, Gianluca
    Sharif, Amir
    Sciarretta, Giada
    Carbone, Roberto
    Ranise, Silvio
    DATA AND APPLICATIONS SECURITY AND PRIVACY XXXVII, DBSEC 2023, 2023, 13942 : 203 - 222
  • [28] Privacy-aware access control with trust management in web service
    Min Li
    Xiaoxun Sun
    Hua Wang
    Yanchun Zhang
    Ji Zhang
    World Wide Web, 2011, 14 : 407 - 430
  • [29] A privacy-aware framework for targeted advertising
    Wang, Wei
    Yang, Linlin
    Chen, Yanjiao
    Zhang, Qian
    COMPUTER NETWORKS, 2015, 79 : 17 - 29
  • [30] A Privacy-Aware Conceptual Framework for Coordination
    Elahi, Haroon
    Wang, Guojun
    Zhang, Wei
    2017 15TH IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED PROCESSING WITH APPLICATIONS AND 2017 16TH IEEE INTERNATIONAL CONFERENCE ON UBIQUITOUS COMPUTING AND COMMUNICATIONS (ISPA/IUCC 2017), 2017, : 190 - 197