XACML-Based Access Control for Decentralized Online Social Networks

被引:0
|
作者
Nasim, Robayet [1 ]
Buchegger, Sonja [2 ]
机构
[1] Karlstad Univ, Dept Math & Comp Sci, SE-65188 Karlstad, Sweden
[2] KTH Royal Inst Technol, Sch Comp Sci & Commun, SE-10044 Stockholm, Sweden
关键词
eXtensible Access Control Markup Language (XACML); Decentralized Online Social Networks (DOSN); Online Social Networks (OSN); peer-to-peer; Security Assertion Markup Language (SAML); access control; privacy;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
With the increasing popularity of Online Social Networks (OSNs), one type of Big Data, namely personal, sensitive, and behavioral information, is being collected, analyzed, and spread on the Internet. As the collection and mining of user data improves, both qualitatively and quantitatively, users' privacy is more and more at risk. Current OSNs and other web services are, at least logically, centralized and thus more vulnerable to accidental or deliberate privacy leaks as well as inference. Decentralization, taking away the control of a single service provider, can be a step toward preserving the users' privacy and giving them control over their own data. Even after removing the threats from centralized big data, the users' personal data needs to be protected from unauthorized access. In contrast to other proposals for decentralized OSNs, we aim to provide the basis for a privacy-preserving system built from light-weight and readily available components, namely the eXtensible Access Control Markup Language (XACML) and the Security Assertion Markup Language (SAML) with secret-key authentication, including simple ways of formulating access policies for users. We find that this combination provides a straightforward way of keeping and deliberately sharing personal information with other users that is robust against a range of attacks including unauthorized access at least in the case of every user's profile being stored on machines under their control. One can consider replicas on trusted servers; storage on untrusted servers, however, is left for future work.
引用
收藏
页码:671 / 676
页数:6
相关论文
共 50 条
  • [1] A XACML-based access control model for Web service
    Tao, H
    [J]. 2005 INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING PROCEEDINGS, VOLS 1 AND 2, 2005, : 1140 - 1144
  • [2] Distributed Access Control Management - A XACML-Based Approach
    Rissanen, Erik
    Brossard, David
    Slabbert, Adriaan
    [J]. SERVICE-ORIENTED COMPUTING - ICSOC 2009, PROCEEDINGS, 2009, 5900 : 639 - +
  • [3] XACML-based policy-driven access control for mobile environments
    Qing, Xuebing
    Adams, Carlisle
    [J]. 2006 CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING, VOLS 1-5, 2006, : 523 - +
  • [4] XACML-Based composition policies for ambient networks
    Kamienski, Carlos
    Fidalgo, Joseane
    Dantas, Ramide
    Sadok, Djamel
    Ohlman, Boerje
    [J]. EIGHTH IEEE INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS - PROCEEDINGS, 2007, : 77 - +
  • [5] Blockchain-based access control management for Decentralized Online Social Networks
    Rahman, Mohsin Ur
    Guidi, Barbara
    Baiardi, Fabrizio
    [J]. JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2020, 144 : 41 - 54
  • [6] Relationship-Based Access Control for Resharing in Decentralized Online Social Networks
    Gay, Richard
    Hu, Jinwei
    Mantel, Heiko
    Mazaheri, Sogol
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY (FPS 2017), 2018, 10723 : 18 - 34
  • [7] XACML-based semantic rules language and ontological model for reconciling semantic differences of access control rules
    Manal, Lamri
    Lyazid, Sabri
    [J]. INTERNATIONAL JOURNAL OF AD HOC AND UBIQUITOUS COMPUTING, 2023, 43 (01) : 1 - 17
  • [8] Relationship Strength Based Access Control in Online Social Networks
    Kumar, Abhinav
    Rathore, Nemi Chandra
    [J]. PROCEEDINGS OF FIRST INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY FOR INTELLIGENT SYSTEMS: VOL 2, 2016, 51 : 197 - 206
  • [9] Social Puzzles: Context-Based Access Control in Online Social Networks
    Jadliwala, Murtuza
    Maiti, Anindya
    Namboodiri, Vinod
    [J]. 2014 44TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2014, : 299 - 310
  • [10] A Secure and Efficient Decentralized Access Control Scheme Based on Blockchain for Vehicular Social Networks
    Zhang, Leyou
    Zhang, Ye
    Wu, Qing
    Mu, Yi
    Rezaeibagha, Fatemeh
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (18) : 17938 - 17952