Secure data flow in networks and in the Internet of things
网络和物联网中的安全数据流
基本信息
- 批准号:RGPIN-2019-06394
- 负责人:
- 金额:$ 1.68万
- 依托单位:
- 依托单位国家:加拿大
- 项目类别:Discovery Grants Program - Individual
- 财政年份:2020
- 资助国家:加拿大
- 起止时间:2020-01-01 至 2021-12-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Organizations and data networks, such as those found in the Cloud and the Internet of Things, often have complex and evolving data flow paths, which may be important to control, for secrecy (also called confidentiality) and privacy.
Supposing that certain entities contain some data, and are connected in certain ways to other entities by communication channels, where can the data end up? Given certain restricted data, what are the entities to which they are privy? How can we configure communication channels so that only desired data flows are possible? How can data flows be controlled, by the owners of the data or by security administrators in the organizations, according to requirements, such as network or organizational policies? How can we deal with the continuous updates and transformations of the data flow structure, as well as changing requirements? The applicant has recently identified new principles for data flow security. These principles make it possible to answer, theoretically and practically, and by using efficient algorithms, important questions such as: a) given an existing data communication channel structure in a network, what are the most appropriate areas in the network where secret data should be placed; b) given certain secrecy requirements, how to configure channel structures capable of enforcing the requirements. This configuration leads to Multilevel models which are generalizations of the traditional ones, but which are more flexible and can be proved to be necessary and sufficient to guarantee data secrecy.
What has been done is only a beginning, because very flexible and dynamic solutions are needed, namely for the Internet of Things or the Cloud. Many types of environments exist, and each environment has its particular secrecy needs: hospital networks, home networks, e-commerce networks, industrial networks, intelligent environments etc. Beyond this, today's data networks are worldwide, and characterized by rapid mutability. Some mutations can be inconsequential, others will need various degrees of security assurance. Developing these ideas is a main goals of this research project.
As an application of these results we are planning to show how to use the principles that we are developing in the field of data secrecy for legal applications, namely smart contracts in the IoT. Blockchain implements data authentication, but not data flow constraints. We plan to show how to assure desired data flow properties in smart contracts.
This research will be important for developers of IoT systems, as well as for developers of software tools to help them. The research outcomes will be principles and prototype tools to help such specialists in their work. This research is important to Canada, since our country is positioning itself as a provider of Internet services, in areas such as e-commerce, medical systems, transportation systems, etc.
组织和数据网络,例如在云和物联网中发现的那些,通常具有复杂且不断发展的数据流路径,这对于控制保密性(也称为机密性)和隐私可能是重要的。
假设某些实体包含一些数据,并且通过通信信道以某些方式连接到其他实体,数据最终会在哪里?鉴于某些受限制的数据,他们所知道的实体是什么?我们如何配置通信通道,以便只允许所需的数据流?数据所有者或组织中的安全管理员如何根据要求(如网络或组织策略)控制数据流?我们如何处理数据流结构的不断更新和转换以及不断变化的需求?申请人最近确定了数据流安全的新原则。这些原理使得有可能在理论上和实践中通过使用有效的算法来回答重要的问题,例如:a)给定网络中现有的数据通信信道结构,网络中应该放置秘密数据的最合适的区域是什么; B)给定某些保密要求,如何配置能够实施这些要求的信道结构。这种配置导致了多级模型,这些模型是传统模型的推广,但更灵活,并且可以证明是必要的和足够的,以保证数据的保密性。
所做的只是一个开始,因为需要非常灵活和动态的解决方案,即物联网或云。存在许多类型的环境,每个环境都有其特定的保密需求:医院网络,家庭网络,电子商务网络,工业网络,智能环境等。有些变化可能是无关紧要的,其他的则需要不同程度的安全保证。发展这些想法是本研究项目的主要目标。
作为这些结果的应用,我们计划展示如何将我们在数据保密领域开发的原则用于法律的应用,即物联网中的智能合约。区块链实现了数据认证,但没有数据流约束。我们计划展示如何确保智能合约中所需的数据流属性。
这项研究对于物联网系统的开发人员以及软件工具的开发人员来说都很重要。研究成果将成为帮助这些专家开展工作的原则和原型工具。这项研究对加拿大很重要,因为我国将自己定位为电子商务、医疗系统、运输系统等领域的互联网服务提供者。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Logrippo, Luigi其他文献
A framework for risk assessment in access control systems
- DOI:
10.1016/j.cose.2013.03.010 - 发表时间:
2013-11-01 - 期刊:
- 影响因子:5.6
- 作者:
Khambhammettu, Hemanth;Boulares, Sofiene;Logrippo, Luigi - 通讯作者:
Logrippo, Luigi
Logrippo, Luigi的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Logrippo, Luigi', 18)}}的其他基金
Secure data flow in networks and in the Internet of things
网络和物联网中的安全数据流
- 批准号:
RGPIN-2019-06394 - 财政年份:2022
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Secure data flow in networks and in the Internet of things
网络和物联网中的安全数据流
- 批准号:
RGPIN-2019-06394 - 财政年份:2021
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Secure data flow in networks and in the Internet of things
网络和物联网中的安全数据流
- 批准号:
RGPIN-2019-06394 - 财政年份:2019
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Data Protection in Organization Workflows and Service Oriented Architectures
组织工作流程和面向服务的架构中的数据保护
- 批准号:
8976-2013 - 财政年份:2017
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Data Protection in Organization Workflows and Service Oriented Architectures
组织工作流程和面向服务的架构中的数据保护
- 批准号:
8976-2013 - 财政年份:2016
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Data Protection in Organization Workflows and Service Oriented Architectures
组织工作流程和面向服务的架构中的数据保护
- 批准号:
8976-2013 - 财政年份:2015
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Data Protection in Organization Workflows and Service Oriented Architectures
组织工作流程和面向服务的架构中的数据保护
- 批准号:
8976-2013 - 财政年份:2014
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Data Protection in Organization Workflows and Service Oriented Architectures
组织工作流程和面向服务的架构中的数据保护
- 批准号:
8976-2013 - 财政年份:2013
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Policy-based systems for telecommunications and web services
用于电信和网络服务的基于策略的系统
- 批准号:
8976-2006 - 财政年份:2012
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
Policy-based systems for telecommunications and web services
用于电信和网络服务的基于策略的系统
- 批准号:
8976-2006 - 财政年份:2011
- 资助金额:
$ 1.68万 - 项目类别:
Discovery Grants Program - Individual
相似国自然基金
Scalable Learning and Optimization: High-dimensional Models and Online Decision-Making Strategies for Big Data Analysis
- 批准号:
- 批准年份:2024
- 资助金额:万元
- 项目类别:合作创新研究团队
Data-driven Recommendation System Construction of an Online Medical Platform Based on the Fusion of Information
- 批准号:
- 批准年份:2024
- 资助金额:万元
- 项目类别:外国青年学者研究基金项目
Development of a Linear Stochastic Model for Wind Field Reconstruction from Limited Measurement Data
- 批准号:
- 批准年份:2020
- 资助金额:40 万元
- 项目类别:
基于高频信息下高维波动率矩阵估计及应用
- 批准号:71901118
- 批准年份:2019
- 资助金额:18.0 万元
- 项目类别:青年科学基金项目
半参数空间自回归面板模型的有效估计与应用研究
- 批准号:71961011
- 批准年份:2019
- 资助金额:16.0 万元
- 项目类别:地区科学基金项目
高频数据波动率统计推断、预测与应用
- 批准号:71971118
- 批准年份:2019
- 资助金额:50.0 万元
- 项目类别:面上项目
基于个体分析的投影式非线性非负张量分解在高维非结构化数据模式分析中的研究
- 批准号:61502059
- 批准年份:2015
- 资助金额:19.0 万元
- 项目类别:青年科学基金项目
基于Linked Open Data的Web服务语义互操作关键技术
- 批准号:61373035
- 批准年份:2013
- 资助金额:77.0 万元
- 项目类别:面上项目
体数据表达与绘制的新方法研究
- 批准号:61170206
- 批准年份:2011
- 资助金额:55.0 万元
- 项目类别:面上项目
一类新Regime-Switching模型及其在金融建模中的应用研究
- 批准号:11061041
- 批准年份:2010
- 资助金额:24.0 万元
- 项目类别:地区科学基金项目
相似海外基金
Anti-Complement Immunotherapy for Pancreatic Cancer
胰腺癌的抗补体免疫治疗
- 批准号:
10751872 - 财政年份:2024
- 资助金额:
$ 1.68万 - 项目类别:
Development of a Physics-Data Driven Surface Flux Parameterization for Flow in Complex Terrain
开发物理数据驱动的复杂地形流动表面通量参数化
- 批准号:
2336002 - 财政年份:2024
- 资助金额:
$ 1.68万 - 项目类别:
Continuing Grant
CC* Networking Infrastructure: FAN4Science: Flow-Aware Networking for Data-Intensive Science
CC* 网络基础设施:FAN4Science:数据密集型科学的流感知网络
- 批准号:
2346681 - 财政年份:2024
- 资助金额:
$ 1.68万 - 项目类别:
Standard Grant
Collaborative Research: Understanding the Impacts of Automated Vehicles on Traffic Flow Using Empirical Data
合作研究:利用经验数据了解自动驾驶汽车对交通流量的影响
- 批准号:
2401476 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Standard Grant
Collaborative Research: Enhanced 4D-Flow MRI through Deep Data Assimilation for Hemodynamic Analysis of Cardiovascular Flows
合作研究:通过深度数据同化增强 4D-Flow MRI 用于心血管血流的血流动力学分析
- 批准号:
2246916 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Standard Grant
Collaborative Research: Data-Driven Microreaction Engineering by Autonomous Robotic Experimentation in Flow
协作研究:通过自主机器人实验进行数据驱动的微反应工程
- 批准号:
2208489 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Standard Grant
Evaluation of countermeasures against heat illness from both hardware and software perspectives using satellite remote sensing and human flow data
利用卫星遥感和人流数据从硬件和软件角度评估中暑对策
- 批准号:
23K13457 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Grant-in-Aid for Early-Career Scientists
Inverting turbulence: flow patterns and parameters from sparse data
反演湍流:来自稀疏数据的流动模式和参数
- 批准号:
EP/X017273/1 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Research Grant
Creating digital twins of flows from noisy and sparse flow-MRI data
从嘈杂和稀疏的流 MRI 数据创建流的数字孪生
- 批准号:
EP/X028232/1 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别:
Fellowship
REGULATION OF BONE MARROW MESENCHYMAL STEM CELLS BY VCAM1
VCAM1 对骨髓间充质干细胞的调节
- 批准号:
10537391 - 财政年份:2023
- 资助金额:
$ 1.68万 - 项目类别: