• DocumentCode
    3366792
  • Title

    Enforcing Privacy by Means of an Ontology Driven XACML Framework

  • Author

    Abou-Tair, D.D. ; Berlik, Stefan ; Kelte, Udo

  • Author_Institution
    Univ. of Siegen, Siegen
  • fYear
    2007
  • fDate
    29-31 Aug. 2007
  • Firstpage
    279
  • Lastpage
    284
  • Abstract
    Nowadays enforcing privacy in enterprises is recognized as an issue of impact. Actually, it is a big challenge to adapt normative laws and regulations in a software system. It is a challenging task to include the formalized laws and rules in enterprises since e.g. more than one regulation may affect the terms of privacy concerning one situation. Traditional access control provides a general mechanism for assigning rights to individual users or roles. In the context of privacy this is insufficient; it offers no means to fulfil certain aspects such as limitations to the duration for which private data may be stored. To enforce privacy in enterprises we further need a fine granular access control mechanism on the data entities to ensure that every aspect of privacy can be reflected. This paper provides a novel solution for this by means of ontologies. The usage of ontologies in our approach differs from the conventional form in focusing on generating access control policies which are adapted from our software framework to provide fine granular access on the diverse data sources.
  • Keywords
    XML; authorisation; data privacy; legislation; ontologies (artificial intelligence); access control mechanism; enterprise privacy; normative laws; ontology driven XACML framework; software system regulations; Access control; Application software; Computer architecture; Data privacy; Data security; Information security; Law; Ontologies; Protection; Software systems;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Assurance and Security, 2007. IAS 2007. Third International Symposium on
  • Conference_Location
    Manchester
  • Print_ISBN
    0-7695-2876-7
  • Electronic_ISBN
    978-0-7695-2876-2
  • Type

    conf

  • DOI
    10.1109/IAS.2007.52
  • Filename
    4299787