Title :
System for privacy policy enforcement & access control for web applications
Author :
Goyal, H. ; Deodia, A. ; Gupta, A.
Author_Institution :
Netaji Subhas Institue of Technol., Dwarka
Abstract :
The paper aims at providing practical implementation details of a system for privacy policy enforcement and role based access control of data. The implementation is inspired by the lack of privacy policy enforcement in present application systems. Till now access control has been achieved by coding the required access policies in the application layer or by defining specific roles. This leaves less scope for scalability of the system when the need arises. We attempt to provide privacy aware access control framework that end developers can use for developing their applications. This system will be responsible for automatically implementing the policy enforcement. The developers can then freely utilize the functionality of our system to only focus upon writing their applications.
Keywords :
Internet; authorisation; data privacy; Web application; privacy policy enforcement; role based access control; access control; databases; privacy policies; security; web frameworks;
Conference_Titel :
Information and Communication Technology in Electrical Sciences (ICTES 2007), 2007. ICTES. IET-UK International Conference on
Conference_Location :
Tamil Nadu