Privacy-aware access control with trust management in web service

被引:0
|
作者
Min Li
Xiaoxun Sun
Hua Wang
Yanchun Zhang
Ji Zhang
机构
[1] University of Southern Queensland,Department of Mathematics & Computing
[2] Australian Council for Educational Research,School of Engineering and Science
[3] Victoria University,undefined
来源
World Wide Web | 2011年 / 14卷
关键词
access control; privacy protection; generalization boundary;
D O I
暂无
中图分类号
学科分类号
摘要
With the significant development of mobile commerce, privacy becomes a major concern for both customers and enterprises. Although data generalization can provide significant protection of an individual’s privacy, over-generalized data may render data of little value or useless. In this paper, we devise generalization boundary techniques to maximize data usability while, minimizing disclosure of privacy. Inspired by the fact that the permissible generalization level results in a much finer level access control, we propose a privacy-aware access control model in web service environments. We also analyze how to manage a valid access process through a trust-based decision and ongoing access control policies. The extensive experiments on both real-world and synthetic data sets show that the proposed privacy aware access control model is practical and effective.
引用
收藏
页码:407 / 430
页数:23
相关论文
共 50 条
  • [21] Modelling privacy-aware trust negotiations
    Rios, Ruben
    Fernandez-Gago, Carmen
    Lopez, Javier
    COMPUTERS & SECURITY, 2018, 77 : 773 - 789
  • [22] Privacy-aware service integration
    Parrend, Pierre
    Frenot, Stephane
    Hoehn, Sebastian
    2007 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE SERVICES, 2007, : 397 - +
  • [23] Using Searchable Encryption for Privacy-Aware Orchestrated Web Service Composition
    Khabou, Imen
    Rouached, Mohsen
    Viejo, Alexandre
    Sanchez, David
    2017 13TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY (CIS), 2017, : 307 - 311
  • [24] A privacy-aware access control model for distributed network monitoring
    Papagiannakopoulou, Eugenia I.
    Koukovini, Maria N.
    Lioudakis, Georgios V.
    Garcia-Alfaro, Joaquin
    Kaklamani, Dimitra I.
    Venieris, Iakovos S.
    Cuppens, Frederic
    Cuppens-Boulahia, Nora
    COMPUTERS & ELECTRICAL ENGINEERING, 2013, 39 (07) : 2263 - 2281
  • [25] An aspect-oriented approach to privacy-aware access control
    Chen, Kung
    Wang, Da-Wei
    PROCEEDINGS OF 2007 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2007, : 3016 - +
  • [26] Privacy query rewriting algorithm instrumented by a privacy-aware access control model
    Oulmakhzoune, Said
    Cuppens-Boulahia, Nora
    Cuppens, Frederic
    Morucci, Stephane
    Barhamgi, Mahmoud
    Benslimane, Djamal
    ANNALS OF TELECOMMUNICATIONS, 2014, 69 (1-2) : 3 - 19
  • [27] Privacy query rewriting algorithm instrumented by a privacy-aware access control model
    Said Oulmakhzoune
    Nora Cuppens-Boulahia
    Frédéric Cuppens
    Stéphane Morucci
    Mahmoud Barhamgi
    Djamal Benslimane
    annals of telecommunications - annales des télécommunications, 2014, 69 : 3 - 19
  • [28] TRIMS, a privacy-aware trust and reputation model for identity management systems
    Gomez Marmol, Felix
    Girao, Joao
    Martinez Perez, Gregorio
    COMPUTER NETWORKS, 2010, 54 (16) : 2899 - 2912
  • [29] Assurance, Consent and Access Control for Privacy-Aware OIDC Deployments
    Sassetti, Gianluca
    Sharif, Amir
    Sciarretta, Giada
    Carbone, Roberto
    Ranise, Silvio
    DATA AND APPLICATIONS SECURITY AND PRIVACY XXXVII, DBSEC 2023, 2023, 13942 : 203 - 222
  • [30] A privacy-aware architecture for a Web rating system
    Viecco, C.
    Tsow, A.
    Camp, L. J.
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2009, 53 (02)