A view-based monitoring for usage control in web services

被引:2
|
作者
Meziane, Hassina [1 ,2 ]
Benbernou, Salima [2 ]
Hacid, Mohand-Said [3 ]
Malik, Zaki [4 ]
Papazoglou, Mike [5 ]
机构
[1] Univ Oran, Es Senia, Algeria
[2] Univ Paris 05, Paris, France
[3] Univ Lyon 1, F-69622 Villeurbanne, France
[4] Wayne State Univ, Detroit, MI USA
[5] Tilburg Univ, NL-5000 LE Tilburg, Netherlands
关键词
Privacy aware SLA; Usage control; Monitoring; Usage flow view; Query containment; Compliance; PRIVACY COMPLIANCE; QUERY CONTAINMENT; CHECKING;
D O I
10.1007/s10619-014-7169-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Quality of service (QoS) can be a critical element for achieving the business goals of a service provider, and accepting a service by the customer. The criticality is more pronounced when the service provider handles the non-functional QoS attribute of privacy, i.e., privacy related to the customer's personal data. In this regard, the customer needs some guarantee(s) from the service provider about confidentiality management, leading to overall quality characterization of the provided service. A service level agreement (SLA) is primarily intended to specify (in terms of clauses) the level of such non-functional QoS delivered to the customer. The aim is to provide customers with tools that show the fulfillment of QoS guarantees, through SLA monitoring process. In this paper, we address the problem of usage control of private data in service based applications ensuring end-to-end QoS capabilities. We propose a query containment based approach to support the monitoring of privacy-aware SLA compliance, that spells out a customer's privacy rights, and shows how the customer's private information must be handled by a Web service provider. We introduce the private data usage flow model upon which the monitoring is performed to observe the data usage flow, and capture the privacy vulnerabilities that may lead to non-compliance. The model is built on top of (i) properties and time-related privacy requirements to be monitored, and (ii) a set of identified privacy violations. As proof of concept, a privacy aware SLA monitoring system, which is an easy-to-use, and efficient tool for observing the dynamic private data usage flow is developed. Experiment results indicate the relevance and applicability of the proposed approach.
引用
收藏
页码:145 / 178
页数:34
相关论文
共 50 条
  • [1] A view-based monitoring for usage control in web services
    Hassina Meziane
    Salima Benbernou
    Mohand-Said Hacid
    Zaki Malik
    Mike Papazoglou
    [J]. Distributed and Parallel Databases, 2016, 34 : 145 - 178
  • [2] A View-Based Monitoring for Privacy-Aware Web Services
    Meziane, Hassina
    Benbernou, Salima
    Zerdali, Aouda K.
    Hacid, Mohand-Said
    Papazoglou, Mike
    [J]. 26TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING ICDE 2010, 2010, : 1129 - 1132
  • [3] A view-based approach for tracking composite Web services
    Benslimane, D
    Maamar, Z
    Ghedira, C
    [J]. Third European Conference on Web Services, Proceedings, 2005, : 170 - 179
  • [4] Secured web services based on extended usage control
    Shin, Woochul
    Yoo, Sang Bong
    [J]. EMERGING TECHNOLOGIES IN KNOWLEDGE DISCOVERY AND DATA MINING, 2007, 4819 : 656 - 663
  • [5] A view-based control flow metric
    Gossens, S
    Dal Cin, M
    [J]. PROCEEDINGS OF THE 28TH ANNUAL INTERNATIONAL COMPUTER SOFTWARE AND APPLICATION CONFERENCE, WORKSHOP AND FAST ABSTRACTS, 2004, : 26 - 27
  • [6] View-based access control with high assurance
    Qian, XL
    [J]. 1996 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 1996, : 85 - 93
  • [7] A View-Based Acces Control Model for EHR Systems
    Sicuranza, Mario
    Esposito, Angelo
    Ciampi, Mario
    [J]. INTELLIGENT DISTRIBUTED COMPUTING VIII, 2015, 570 : 443 - 452
  • [8] View-based Maps
    Konolige, Kurt
    Bowman, James
    Chen, J. D.
    Mihelich, Patrick
    Calonder, Michael
    Lepetit, Vincent
    Fua, Pascal
    [J]. INTERNATIONAL JOURNAL OF ROBOTICS RESEARCH, 2010, 29 (08): : 941 - 957
  • [9] Ontogator -: A semantic view-based search engine service for web applications
    Makela, Eetu
    Hyvonen, Eero
    Saarela, Samppa
    [J]. SEMANTIC WEB - ISEC 2006, PROCEEDINGS, 2006, 4273 : 847 - +
  • [10] View-based web page retrieval using interactive sketch query
    Watai, Yasuyuki
    Yamasaki, Toshihiko
    Aizawa, Kiyoharu
    [J]. 2007 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, VOLS 1-7, 2007, : 3153 - +