首页> 外文会议>Annual Conference on Privacy, Security and Trust >TRAAC: Trust and risk aware access control
【24h】

TRAAC: Trust and risk aware access control

机译:TRAAC:信任和风险感知访问控制

获取原文

摘要

Systems for allowing users to manage access to their personal data are important for a wide variety of applications including healthcare, where authorised individuals may need to share information in ways that the owner had not anticipated. Simply denying access in unknown cases may hamper critical decisions and affect service delivery. Rather, decisions can be made considering the risk of a given sharing request, and the trustworthiness of the requester. We propose a trust- and risk-aware access control mechanism (TRAAC) and a sparse zone-based policy model, which together allow decision-making on the basis of the requester's trustworthiness with regards to both the information to be shared, and the completion of obligations designed to mitigate risk. We formalise our approach and compare it with an existing approach that does not model trust through simulation.
机译:允许用户管理对个人数据的访问的系统对于包括医疗保健在内的各种应用都很重要,在这些应用中,授权个人可能需要以所有者未曾料到的方式共享信息。在未知情况下简单地拒绝访问可能会影响关键决策并影响服务交付。相反,可以在考虑给定共享请求的风险以及请求者的可信赖性的情况下做出决定。我们提出了一种信任和风险感知的访问控制机制(TRAAC)和基于稀疏区域的策略模型,它们共同允许基于请求者对共享信息和完成情况的可信赖性进行决策旨在减轻风险的义务。我们对方法进行形式化并将其与不通过模拟对信任进行建模的现有方法进行比较。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号