首页> 外文期刊>IEEE transactions on dependable and secure computing >oGBAC—A Group Based Access Control Framework for Information Sharing in Online Social Networks
【24h】

oGBAC—A Group Based Access Control Framework for Information Sharing in Online Social Networks

机译:OGBAC-基于组的访问控制框架,用于在线社交网络中的信息共享

获取原文
获取原文并翻译 | 示例

摘要

Internet users receive various online social networks (OSNs) services, however, providers of OSNs do not always provide users fine-grained privacy protection mechanisms with sufficient privacy protection for shared resources. In this paper, we propose a formal Group-Based Access Control (oGBAC) framework for preventing privacy disclosure when sharing information within or among groups in OSNs. Our framework extends the group-centric Secure Information Sharing (g-SIS) models by adapting the concept of the group to OSNs. We impose some restrictions to the group and information flow among groups to ensure that operations cannot incur privacy disclosure when sharing information among friends in OSNs. In view of characteristics of OSNs and the requirements of secure information flow, the oGBAC model also incorporates some ideas from the Attribute-Based Access Control (ABAC) to develop information flow based rules using relationship among attributes (such as tags, time and security levels) of objects and subjects in OSNs. Administration related rules and access related rules are designed for each access operation of group based OSNs' information sharing. The security of oGBAC model is analyzed using formal methods. To demonstrate the usability of the oGBAC model, we implement the model with the Comparative Attribute-Based Encryption (CCP-CABE), and analyze the security and efficiency of the implemented system to prove the effectiveness of the implemented system.
机译:Internet用户在各种在线社交网络(OSNS)服务,但是,OSN的提供商并不总是为用户提供细粒度的隐私保护机制,为共享资源提供足够的隐私保护。在本文中,我们提出了一个正式的基于组的访问控制(OGBAC)框架,用于防止在奥斯纳中的组中或间组中的信息时防止隐私披露。我们的框架通过将组的概念调整为OSN来扩展由组中心的安全信息共享(G-SIS)模型。我们对小组之间的集团和信息流施加了一些限制,以确保在奥斯人中共享信息时无法招致隐私披露。鉴于OSN的特征和安全信息流的要求,OGBAC模型还从基于属性的访问控制(ABAC)中包含了一些思想,以使用属性之间的关系(例如标记,时间和安全级别之间的关系)OSN中的物体和主题。管理相关规则和访问相关规则是为基于组的OSNS信息共享的每个访问操作而设计的。使用正式方法分析OGBAC模型的安全性。为了展示OGBAC模型的可用性,我们使用基于比较的属性的加密(CCP-CABE)来实现模型,并分析所实现系统的安全性和效率以证明所实现系统的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号