Security, Privacy and Interoperability in Heterogeneous Systems

Abstract : Partners in VOs can share large amount of data. Sharing of individual data items is straightforward, but sharing components of complex data structures stored in heterogeneous systems is often a challenge. Sharing is typically governed by rules and policies that need to be translated into access right / privilege control and data granularity control. Simultaneous control of privileges and data granularity across different organizations is a difficult task, and most traditional approaches, such role-based access control can become prohibitively complex in such scenarios. We propose a scheme for concurrent control of subject privileges and object granularity. It includes participants, duties and operations, and generates security labels that describe security features. To facilitate interoperability between heterogeneous systems, the labels also carry information about the data model, including dynamic hierarchy description. The model supports subject activity control over objects with variable data access granularity. It encompasses the advantages of existing role based and label based control. First, an abstract subject privilege control model is built, and the mathematical relationships between privileges in the label system are defined. Second, an abstract object dynamic granularity model is produced and the mathematical relationship between granularity levels is established. At last, a pair-wise privacy label system is provided as an integrated information protection mechanism, where relationships between subject activities and privileges are described for actual access control. A formal verification of the proposed method has also been performed.
Type de document :
Communication dans un congrès
Luis M. Camarinha-Matos; Xavier Boucher; Hamideh Afsarmanesh. 11th IFIP WG 5.5 Working Conference on Virtual Enterprises (PRO-VE), Oct 2010, Saint-Etienne, France. Springer, IFIP Advances in Information and Communication Technology, AICT-336, pp.713-721, 2010, Collaborative Networks for a Sustainable World. 〈10.1007/978-3-642-15961-9_84〉
Liste complète des métadonnées

Littérature citée [8 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-01055927
Contributeur : Hal Ifip <>
Soumis le : lundi 25 août 2014 - 17:03:33
Dernière modification le : vendredi 11 août 2017 - 13:19:03
Document(s) archivé(s) le : mardi 11 avril 2017 - 19:50:41

Fichier

pro84.pdf
Fichiers produits par l'(les) auteur(s)

Licence


Distributed under a Creative Commons Paternité 4.0 International License

Identifiants

Citation

Jian Zhong, Peter Bertok, Zahir Tari. Security, Privacy and Interoperability in Heterogeneous Systems. Luis M. Camarinha-Matos; Xavier Boucher; Hamideh Afsarmanesh. 11th IFIP WG 5.5 Working Conference on Virtual Enterprises (PRO-VE), Oct 2010, Saint-Etienne, France. Springer, IFIP Advances in Information and Communication Technology, AICT-336, pp.713-721, 2010, Collaborative Networks for a Sustainable World. 〈10.1007/978-3-642-15961-9_84〉. 〈hal-01055927〉

Partager

Métriques

Consultations de la notice

136

Téléchargements de fichiers

125