DocumentCode :
2875670
Title :
An Entity-Centric Approach for Privacy and Identity Management in Cloud Computing
Author :
Angin, Pelin ; Bhargava, Bharat ; Ranchal, Rohit ; Singh, Noopur ; Linderman, Mark ; Othmane, Lotfi Ben ; Lilien, Leszek
Author_Institution :
Dept. of Comput. Sci., Purdue Univ., West Lafayette, IN, USA
fYear :
2010
fDate :
Oct. 31 2010-Nov. 3 2010
Firstpage :
177
Lastpage :
183
Abstract :
Entities (e.g., users, services) have to authenticate themselves to service providers (SPs) in order to use their services. An entity provides personally identifiable information (PII) that uniquely identifies it to an SP. In the traditional application-centric Identity Management (IDM) model, each application keeps trace of identities of the entities that use it. In cloud computing, entities may have multiple accounts associated with different SPs, or one SP. Sharing PIIs of the same entity across services along with associated attributes can lead to mapping of PIIs to the entity. We propose an entity-centric approach for IDM in the cloud. The approach is based on: (1) active bundles-each including a payload of PII, privacy policies and a virtual machine that enforces the policies and uses a set of protection mechanisms to protect themselves, (2) anonymous identification to mediate interactions between the entity and cloud services using entity´s privacy policies. The main characteristics of the approach are: it is independent of third party, gives minimum information to the SP and provides ability to use identity data on untrusted hosts.
Keywords :
data privacy; security of data; virtual machines; anonymous identification; cloud computing; cloud services; entity-centric approach; identity data; identity management; personally identifiable information; privacy management; privacy policy; protection mechanism; service providers; untrusted host; user authentication; virtual machine; Authentication; Cloud computing; Clouds; Privacy; Protocols; Prototypes; active bundles; anonymous identification; cloud computing; identity management (IDM); personally identifiable information (PII); privacy; privacy-enhancing technologies (PET); security; zero-knowledge proofs (ZKP);
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Reliable Distributed Systems, 2010 29th IEEE Symposium on
Conference_Location :
New Delhi
ISSN :
1060-9857
Print_ISBN :
978-0-7695-4250-8
Type :
conf
DOI :
10.1109/SRDS.2010.28
Filename :
5623390
Link To Document :
بازگشت