首页> 外文会议>10th IEEE International Conference on Computer and Information Technology >Privacy-Aware Access Control and Authorization in Passive Network Monitoring Infrastructures
【24h】

Privacy-Aware Access Control and Authorization in Passive Network Monitoring Infrastructures

机译:被动网络监视基础结构中具有隐私意识的访问控制和授权

获取原文

摘要

Despite the usefulness of passive network monitoring for the operation, maintenance, control and protection of communication networks, as well as law enforcement, network monitoring activities are surrounded by serious privacy implications. In this paper, an innovative approach for privacy-preserving authorization and access control to data originating from passive network monitoring is described. The proposed framework relies on an ontological model for the specification of the access control policies, which are evaluated and enforced on a two-phase and two-stage basis by a system that intercedes between the network link and the monitoring applications. The two stages refer to controlled access regarding both the data that are disclosed to the monitoring application from the mediating system and the raw data that the mediator retrieves from the network link. On the other hand, the two phases concern respectively the execution of ȁC;staticȁD; and ȁC;dynamicȁD; control; the former enforces the rules that are a priori applicable, grounded on the data, role and purpose semantics, while the latter evaluates the real-time contextual parameters for the adaptation of the access control procedures to the particular conditions underlying a request.
机译:尽管无源网络监视对于通信网络的运行,维护,控制和保护以及执法很有用,但是网络监视活动仍存在严重的隐私隐患。本文描述了一种创新的方法,用于保护隐私授权和对来自被动网络监视的数据的访问控制。所提出的框架依赖于用于访问控制策略规范的本体模型,该模型在网络链路和监视应用程序之间进行干预的系统在两阶段和两阶段的基础上进行评估和实施。这两个阶段是指有关从中介系统向监视应用程序公开的数据和中介者从网络链路检索的原始数据的受控访问。另一方面,这两个阶段分别涉及ȁC;staticȁD;的执行。和ȁC;动态ȁD;控制;前者根据数据,角色和目的语义执行先验适用的规则,而后者评估实时上下文参数以使访问控制过程适应请求所依据的特定条件。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号