• DocumentCode
    568990
  • Title

    Towards privacy-preserving access control with hidden policies, hidden credentials and hidden decisions

  • Author

    Harbach, Marian ; Fahl, Sascha ; Brenner, Michael ; Muders, Thomas ; Smith, Matthew

  • Author_Institution
    Distrib. Comput. & Security Group, Leibniz Univ. Hannover, Hannover, Germany
  • fYear
    2012
  • fDate
    16-18 July 2012
  • Firstpage
    17
  • Lastpage
    24
  • Abstract
    The growing adoption of cloud technology in sensitive application domains, such as medicine, gives rise to new problems in maintaining the privacy of the involved parties during authorisation. In such domains, an honest but curious service provider can derive sensitive information purely from the authorisation process. In this paper, we present a detailed discussion of this rising problem including a concrete example and argue the need for the combination of hidden credentials, hidden policies and hidden decisions. We then show that mechanisms explored in previous work only cover individual aspects of this problem, but do not achieve a comprehensive solution without making restrictive assumptions on the resources, policies or subjects to be protected. As a first step towards solving this problem, we introduce an abstract foundation for using homomorphic cryptography to provide the required combination of privacy as a wrapper for other access control (AC) mechanisms. We achieve hidden policies, hidden credentials and even hidden access control decisions, so that the subject of an AC request only learns whether or not access was granted. Meanwhile, the provider of a resource learns nothing at the policy decision point and only access frequencies for individual resources at the policy enforcement point. We postulate that this is the maximum achievable level of protection in the authorisation process, without making restrictive assumptions on the resources, policies or subjects to be protected. Once homomorphic cryptography achieves satisfactory performance, our model can be used to transparently add this protection to other access control models.
  • Keywords
    authorisation; cryptography; data privacy; abstract foundation; authorisation process; cloud technology; hidden credentials; hidden decisions; hidden policies; homomorphic cryptography AC request; medicine; policy decision point; policy enforcement point; privacy-preserving access control; sensitive application domains; service provider; Authorization; Biomedical imaging; Cryptography; Medical services; Privacy; Access Control; Hidden Credentials; Hidden Decisions; Hidden Policies; Homomorphic Cryptography; Privacy;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Privacy, Security and Trust (PST), 2012 Tenth Annual International Conference on
  • Conference_Location
    Paris
  • Print_ISBN
    978-1-4673-2323-9
  • Electronic_ISBN
    978-1-4673-2325-3
  • Type

    conf

  • DOI
    10.1109/PST.2012.6297915
  • Filename
    6297915