PrimeLife Policy Language
PrimeLife Policy Language
复制标题
PrimeLife 政策语言
DOI:
--
复制
发表时间:
2010
期刊:
影响因子:
--
通讯作者:
Mario Verdicchio
中科院分区:
文献类型:
--
作者:
C. Ardagna;Laurent Bussard;S. Vimercati;G. Neven;S. Paraboschi;Eros Pedrini;Franz;D. Raggett;P. Samarati;S. Trabelsi;Mario Verdicchio
The sudden popularity of social networks and web 2.0 applications changed radically the Internet landscape and the users’ behavior. Today’s young people are the first generation with the ability to distribute information quickly, cheaply and to large groups of people. The amount of personal and private information published and stored in the servers becomes so huge that the traditional concepts of privacy were radically affected. To appease such concerns, enterprises and service providers publish privacy statements that promise fair information practices. Written in natural language or formalized using languages like P3P [1], EPAL [2], XACML [3] etc... they are only promises but not necessarily enforced by technical measures. These problems are amplified if personal data is used not only by the enterprise that collected the data, but also by secondary users such as partner organizations, or government agencies. These flows of data are complex. Threats to data privacy can come from inside (accidental disclosure, insider curiosity and subornation) as well as from the outside (uncontrolled secondary usage) of each organization. Putting customer information online further increases the risk of exposing private and sensitive information to outsiders. In this paper we propose a new policy language handling access control and data usage at the same time. In the context of the European ICT PrimeLife1 we propose an extension of the eXtensible access control markup language (XACML 3.0) offering one of the most popular standardized policy language. This extension suggests a new obligation handling mechanism taking into account temporal constraints, pre-obligations, conditional obligations, and repeating obligations together with a down-stream usage authorization system defining the access control rules under which personal information collected by an entity can be forwarded to a third party. Moreover, our language is based on the concept of trusted credentials.