【24h】

A UML Profile for Privacy Enforcement

机译:用于隐私保护的UML配置文件

获取原文

摘要

Nowadays most software applications have to deal with personal data, specially with the emergence of Web-based applications, where user profile information has become one of their main assets. Due to regulation laws and to protect the privacy of users, customers and companies; most of this information is considered private, and therefore convenient ways to gather, process and store them have to be proposed. A common problem when modeling software systems is the lack of support to specify how to enforce privacy concerns in data models. Current approaches for modeling privacy cover high-level privacy aspects to describe what should be done with the data (e.g., elements to be private) instead of how to do it (e.g., which privacy enhancing technology to use); or propose access control policies, which may cover privacy only partially. In this paper we propose a profile to define and enforce privacy concerns in UML class diagrams. Models annotated with our profile can be used in model-driven methodologies to generate privacy-aware applications.
机译:如今,大多数软件应用程序都必须处理个人数据,特别是随着基于Web的应用程序的出现,其中用户配置文件信息已成为其主要资产之一。根据监管法律并保护用户,客户和公司的隐私;这些信息中的大多数被认为是私有的,因此必须提出一种方便的方法来收集,处理和存储它们。在对软件系统进行建模时,一个常见的问题是缺乏支持来指定如何在数据模型中强制执行隐私问题。当前用于建模隐私的方法涵盖了高级隐私方面,以描述应该对数据执行什么操作(例如,要私有的元素),而不是如何进行处理(例如,使用哪种隐私增强技术);或提出访问控制政策,其中可能仅部分涵盖隐私。在本文中,我们提出了一个概要文件,用于定义和实施UML类图中的隐私问题。用我们的个人资料注释的模型可用于模型驱动的方法中,以生成可感知隐私的应用程序。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号