Traceable and automatic compliance of privacy policies in federated digital identity management

被引:0
|
作者
Squicciarini, Anna [1 ]
Bhargav-Spantzel, Abhilasha [1 ]
Czeskis, Alexei [1 ]
Bertino, Elisa [1 ]
机构
[1] Purdue Univ, Dept Comp Sci, W Lafayette, IN 47907 USA
来源
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Digital identity is defined as the digital representation of the information known about a specific individual or organization. An emerging approach for protecting identities of individuals while at the same time enhancing user convenience is to focus on inter-organization management of identity information. This is referred to as federated identity management. In this paper we develop an approach to support privacy controlled sharing of identity attributes and harmonization of privacy policies in federated environments. Policy harmonizations mechanisms make it possible to determine whether or not the transfer of identity attributes from one entity to another violate the privacy policies stated by the former. We also provide mechanisms for tracing the release of user's identity attributes within the federation. Such approach entails a form of accountability since an entity non-compliant with the users original privacy preferences can be identified. Finally, a comprehensive security analysis details security properties is also offered.
引用
收藏
页码:78 / +
页数:3
相关论文
共 50 条
  • [21] Federated Identity Management for Android
    Fongen, Anders
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON EMERGING SECURITY INFORMATION, SYSTEMS AND TECHNOLOGIES (SECURWARE 2011), 2011, : 77 - 82
  • [22] Privacy and identity management
    Hansen, Marit
    Schwartz, Ari
    Cooper, Alissa
    IEEE SECURITY & PRIVACY, 2008, 6 (02) : 38 - 45
  • [23] Towards accountable management of identity and privacy: Sticky policies and enforceable tracing services
    Mont, MC
    Pearson, S
    Bramhall, P
    14TH INTERNATIONAL WORKSHOP ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2003, : 377 - 382
  • [24] A privacy-preserving scheme with identity traceable property for smart grid
    Wu, Fan
    Li, Xiong
    Xu, Lili
    Kumari, Saru
    COMPUTER COMMUNICATIONS, 2020, 157 : 38 - 44
  • [25] Privacy-Preserving and Traceable Federated Learning for data sharing in industrial IoT applications
    Chen, Junbao
    Xue, Jingfeng
    Wang, Yong
    Huang, Lu
    Baker, Thar
    Zhou, Zhixiong
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 213
  • [26] Traceable Dynamic Public Auditing with Identity Privacy Preserving for Cloud Storage
    Zhang, Yinghui
    Zhang, Tiantian
    Guo, Rui
    Xu, Shengmin
    Zheng, Dong
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2019, 13 (11): : 5653 - 5672
  • [27] Decentralized Identity Management and Privacy-Enhanced Federated Learning for Automotive Systems: A Novel Framework
    Boi, Biagio
    De Santis, Marco
    Esposito, Christian
    2024 IEEE 27TH INTERNATIONAL SYMPOSIUM ON REAL-TIME DISTRIBUTED COMPUTING, ISORC 2024, 2024,
  • [28] Digital privacy: theory, policies and technologies
    Annie I. Anton
    Travis D. Breaux
    Stefanos Gritzalis
    John Mylopoulos
    Requirements Engineering, 2011, 16 : 1 - 2
  • [29] Digital privacy: theory, policies and technologies
    Anton, Annie I.
    Breaux, Travis D.
    Gritzalis, Stefanos
    Mylopoulos, John
    REQUIREMENTS ENGINEERING, 2011, 16 (01) : 1 - 2
  • [30] A Compliance Mechanism for Planning in Privacy Domain Using Policies
    Taheri, Yousef
    Bourgne, Gauvain
    Ganascia, Jean-Gabriel
    NEW FRONTIERS IN ARTIFICIAL INTELLIGENCE, JSAI-ISAI 2021 WORKSHOPS, JURISIN 2021, LENLS18, SCIDOCA 2021, KANSEI-AI 2021, AND AI-BIZ 2021, 2023, 13856 : 77 - 92