DocumentCode :
3193732
Title :
Towards an Integrated Embedded Fine-Grained Information Protection Framework
Author :
Hsieh, George ; Masiane, Moeti M.
Author_Institution :
Dept. of Comput. Sci., Norfolk State Univ., Norfolk, VA, USA
fYear :
2011
fDate :
26-29 April 2011
Firstpage :
1
Lastpage :
8
Abstract :
To protect the security and privacy of sensitive digital information, it is often necessary to employ a variety of security mechanisms such as encryption, integrity control, authentication, and access control. This paper describes a framework that extends eXtensible Access Control Markup Language (XACML) for use as a container for embedding access control policy with the digital content in the same XACML document. The digital content can be further divided into multiple parts, each of which is encapsulated by its own access control policy. This integrated XACML policy and content document is further protected by using XML Encryption (XML-ENC) and XML Signature (XML-DSIG) mechanisms, as well as XML Key Management Specification (XKMS) for leveraging Public Key Infrastructure (PKI), all in support of the embedded and fine-grained structure. This framework and associated security mechanisms are designed primarily to facilitate the protection and sharing of sensitive information in transit and at rest, within and across organizational boundaries. This paper also describes a prototype implementation of the framework for feasibility study purpose.
Keywords :
XML; authorisation; data privacy; digital signatures; public key cryptography; PKI; XACML document; XKMS; XML encryption; XML key management specification; XML signature; XML-DSIG mechanism; XML-ENC; digital content; embedding access control policy; extensible access control markup language; information encapsulation; integrated embedded fine-grained information protection framework; public key infrastructure; sensitive digital information privacy; sensitive digital information security; sensitive information sharing; Access control; Encryption; Prototypes; Public key; XML;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information Science and Applications (ICISA), 2011 International Conference on
Conference_Location :
Jeju Island
Print_ISBN :
978-1-4244-9222-0
Electronic_ISBN :
978-1-4244-9223-7
Type :
conf
DOI :
10.1109/ICISA.2011.5772354
Filename :
5772354
Link To Document :
بازگشت