Safety Enforcement Framework for Bring Your Own Device in Service-Oriented Architecture
Safety Enforcement Framework for Bring Your Own Device in Service-Oriented Architecture
批准号:
RGPIN-2015-04560
负责人:
Hung, Patrick
金额:
$1.31万
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2015
资助国家:
加拿大
项目状态:
已结题
起止时间:
2015-01-01 至 2016-12-31
中文摘要
自带设备(BYOD)是一种新兴的应用程序分发模式,它鼓励用户使用自己的移动设备(如智能手机和平板电脑)访问组织中的各种在线和移动服务,例如在工作中通过技术基础设施或网络,以支持工作流程,只要用户同意遵守组织中的给定安全策略。由于服务可能包含组织的敏感信息甚至商业机密,因此安全策略通常指定安全和隐私规则,例如单点登录(SSO)和轻量级目录访问协议(LDAP)以最终用户级别协议(EULA)格式检查真实性,作为现实的监管措施和评估。Gartner的一份报告预测,2016年,全球超过30%的组织BYOD战略将利用个人应用程序和数据,2017年,一半的组织将要求员工携带自己的移动设备工作。最近,BYOD正在被世界各地的许多传统行业所采用,例如航空公司甚至玩具制造商。从组织的角度来看,BYOD通常被认为不那么安全和值得信赖,因为组织可能无法对移动设备进行控制,因为它可能对组织发布的设备进行控制。此外,移动设备既可以用于工作相关活动,也可以用于私人活动,从而导致访问和存储在同一设备上的公司和私人数据。从用户的角度来看,当设备与服务交互时,他们的私人数据可能也会受到隐私问题的影响。在加拿大,《个人信息保护和电子文件法案》(PIPEDA)规定了私营部门组织在商业活动过程中如何收集、使用或披露个人信息的基本规则。不遵守这些法例可能导致民事及/或刑事处罚及/或监禁。因此,为了在加拿大实施BYOD,组织必须遵守PIPEDA。本文提出了一个移动服务集群的技术框架,用于在新兴的可移动和可组合结构中发布、查找和绑定移动服务。移动服务基于面向服务的体系结构(SOA)和Web服务的技术体系结构。本研究计划侧重于理论模型,该模型具有基于xml的技术框架,用于从BYOD范式中的组织和用户的角度执行和管理移动服务集群和移动设备之间的安全策略。构建的模型和研究结果将为加拿大的组织和用户提供一个正式的解决方案,以支持安全的BYOD范例,特别是在移动服务集群(如移动云计算(MCC))中。
英文摘要
Bring Your Own Device (BYOD) is an emerging application distribution model that encourages users to use their own mobile devices such as smart phones and tablet computers to access various online and mobile services in an organization, for example at work through a technical infrastructure or network, to support a workflow as long as the users agree to comply with a given safety policy in the organization. Since the services may contain sensitive information or even trade secrets of an organization, the safety policy usually specifies the security and privacy rules such as Single Sign On (SSO) and Lightweight Directory Access Protocol (LDAP) check-up of authenticity in End User Level Agreement (EULA) format as realistic regulatory measures and assessment. A Gartner report predicts over 30% of organizational BYOD strategies in the world will leverage personal applications and data in 2016 as well as half of the organizations will require employees to bring their own mobile devices for work purposes in 2017. Recently BYOD is being adopted by many traditional industries such as airline companies and even toy manufacturers around the world. From the perspective of the organization, BYOD is typically perceived as less secure and trustworthy because the organization may not be able to exercise as much control over the mobile devices as it may have over organization-issued devices. In addition, the mobile device may be used for both work related and private activities, resulting in both corporate and private data accessed and stored on that same device. From the perspective of users, there may also be concerns regarding the privacy issues of their private data while the device is interacting with the services. In Canada, the Personal Information Protection and Electronic Documents Act (PIPEDA) sets out ground rules for how private sector organizations may collect, use, or disclose personal information in the course of commercial activities. Failing to comply with these legislations may lead to civil and/or criminal penalties and/or imprisonment. Thus the organizations must comply with PIPEDA in order to enact BYOD in Canada. This proposed research program presents a technical framework of a mobile services cluster to publish, find and bind mobile services in an emerging movable and composable structure. The mobile services are based on the technical architecture of Services Oriented Architecture (SOA) and Web services. This research program focuses on the theoretical model with a technical XML-based framework for enforcing and managing a safety policy between the mobile services cluster and mobile devices from the perspective of both organizations and users in this BYOD paradigm. The built models and research results will bring a formal solution to support a secure BYOD paradigm, especially in a mobile services cluster such as Mobile Cloud Computing (MCC), for both organizations and users in Canada.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2022
-
负责人:Hung, Patrick
-
依托单位:
Sacred Water, Climate Change, and Indigenous Cultural Revitalization through Technology: A Workshop
-
批准号:566491-2021
-
项目类别:PromoScience Supplement for Science Literacy Week
-
资助金额:$0.36万
-
财政年份:2021
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2021
-
负责人:Hung, Patrick
-
依托单位:
Accessible Coding Camps for Youth with Visual Impairment
-
批准号:557023-2020
-
项目类别:PromoScience
-
资助金额:$2.19万
-
财政年份:2021
-
负责人:Hung, Patrick
-
依托单位:
Accessible Coding Demonstrations for Youth with Visual Impairment
-
批准号:561307-2021
-
项目类别:PromoScience Supplement for Science Odyssey
-
资助金额:$0.36万
-
财政年份:2021
-
负责人:Hung, Patrick
-
依托单位:
A Large-scale Three-Dimensional (3D) Printer and Computer Numerical Control (CNC) Machine for Implementing Deformable Zoomorphic Robots
-
批准号:RTI-2022-00668
-
项目类别:Research Tools and Instruments
-
资助金额:$4.0万
-
财政年份:2021
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2020
-
负责人:Hung, Patrick
-
依托单位:
Accessible Coding Camps for Youth with Visual Impairment
-
批准号:557023-2020
-
项目类别:PromoScience
-
资助金额:$2.19万
-
财政年份:2020
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2019
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2018
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2017
-
负责人:Hung, Patrick
-
依托单位:
Child Privacy Protection Engine for Smart Anthropomorphic Toys
-
批准号:RGPIN-2016-05023
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.6万
-
财政年份:2016
-
负责人:Hung, Patrick
-
依托单位:
Services-oriented architecture for motion sensing services
-
批准号:312199-2010
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.46万
-
财政年份:2014
-
负责人:Hung, Patrick
-
依托单位:
Services-oriented architecture for motion sensing services
-
批准号:312199-2010
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.46万
-
财政年份:2013
-
负责人:Hung, Patrick
-
依托单位:
Services-oriented architecture for motion sensing services
-
批准号:312199-2010
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.46万
-
财政年份:2012
-
负责人:Hung, Patrick
-
依托单位:
Services-oriented architecture for motion sensing services
-
批准号:312199-2010
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.46万
-
财政年份:2011
-
负责人:Hung, Patrick
-
依托单位:
Services-oriented architecture for motion sensing services
-
批准号:312199-2010
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.46万
-
财政年份:2010
-
负责人:Hung, Patrick
-
依托单位:
M-services computing security and privacy enforcement model with negotiation support
-
批准号:312199-2008
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.09万
-
财政年份:2009
-
负责人:Hung, Patrick
-
依托单位:
Privacy access control enforcement model for mobile ad hoc healthcare services
-
批准号:342312-2006
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.25万
-
财政年份:2008
-
负责人:Hung, Patrick
-
依托单位:
M-services computing security and privacy enforcement model with negotiation support
-
批准号:312199-2008
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.09万
-
财政年份:2008
-
负责人:Hung, Patrick
-
依托单位:
海外基金