• DocumentCode
    2762771
  • Title

    Do You Talk to Each Poster? Security and Privacy for Interactions with Web Service by Means of Contact Free Tag Readings

  • Author

    Schoo, Peter ; Paolucci, Massimo

  • Author_Institution
    DOCOMO Euro-Labs., Munich, Germany
  • fYear
    2009
  • fDate
    24-24 Feb. 2009
  • Firstpage
    81
  • Lastpage
    86
  • Abstract
    The pervasive service interaction (PERCI) application allows interaction with Web services through associated real world objects equipped with contact less tags. The tags are read with a mobile. The read tag content is used to invoke Web service in the back-end system. The case study presented here is identifying in a structured approach security and privacy requirements of an near field communication (NFC) based application. As the application is leaving the technology research stage and is about to enter some system development stage it was indicated to consider security and privacy for R&D risk management purposes. The application is representative for a service, deployable on a mobile using NFC technology and building on Web services taking particularly the stake-holder role-specific situations and the operation of the application as a telecommunication service into account. The contributions of the paper relate to (i) the security discussion that avoids threats where this is possible and mitigates the remaining risks where this is necessary and (ii) the way to structure and organize the different aspects of the security and privacy consideration, which can be applied elsewhere too.
  • Keywords
    Web services; data privacy; research and development management; risk management; telecommunication security; telecommunication services; ubiquitous computing; R&D risk management; Web service; contact free tag readings; near field communication; pervasive service interaction; privacy; read tag content; security; system development; telecommunication service; Communication system security; Mobile communication; Mobile handsets; Privacy; Radiofrequency identification; Research and development; Risk management; Technological innovation; Telecommunication services; Web services; NFC; direct input; physical mobile interaction; security; smart objects;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Near Field Communication, 2009. NFC '09. First International Workshop on
  • Conference_Location
    Hagenberg
  • Print_ISBN
    978-0-7695-3577-7
  • Type

    conf

  • DOI
    10.1109/NFC.2009.20
  • Filename
    5190422