Analysis of the minimal privacy disclosure for web services collaborations with role mechanisms

Analysis of the minimal privacy disclosure for web services collaborations with role mechanisms
复制标题

DOI:
10.1016/j.eswa.2010.09.128
复制
发表时间:
2011-04
期刊:
Expert Syst. Appl.
影响因子:
--
通讯作者:
Linyuan Liu;Haibin Zhu;Zhiqiu Huang
Linyuan Liu;Haibin Zhu;Zhiqiu Huang
中科院分区:
其他
文献类型:
--
作者:
Linyuan Liu;Haibin Zhu;Zhiqiu Huang

文献摘要

被引文献

相似文献

Web服务协作是高度自动化的、动态的、异构的,并且缺乏对流程损坏的保护。这些特点给合作各方带来了很高的风险。因此,在安全的服务协作中,保证私有数据不被非法收集和泄露成为一个关键问题。本文研究如何在实现功能目标的同时实现最小的隐私泄露。首先,它提出了一个基于角色的隐私感知服务合作框架,它考虑了服务的历史经验在扮演角色的声誉程度的影响。其次,通过扩展接口自动机来支持隐私语义,对服务的隐私行为进行建模。此外,定量分析了最小隐私授权,这是所需的协同服务,以实现功能目标,并提出了最小的隐私授权算法,它允许我们自动获得最佳的隐私策略,跨组织的服务协作系统。最后通过一个案例验证了该方法的正确性和有效性。
Web services collaborations are highly automatic, dynamic, heterogeneous, and lack protection against corruption of processes. These characteristics impose high risks on the parties in collaboration. Hence, it becomes a key issue to guarantee that the private data are not illegally collected and disclosed in secure services collaboration. This paper studies how to realize the minimal privacy disclosure while achieving the functional objectives. Initially, it proposes a revised role-based framework for privacy-aware services collaborations, which considers the impact on the reputation degree of the historic experiences of services in playing roles. Next, it models the privacy behaviors of services by extending the interface automata to support privacy semantics. Furthermore, it quantitatively analyzes the minimal privacy authorization, which is required by the collaborative services to achieve the functional objectives; and presents the minimal privacy delegation algorithm, which allows us to automatically derive optimal privacy policies for an cross-organizational services collaborations system. Finally, it verifies the correctness and efficiency of this role-based approach through a case study.