• DocumentCode
    1809514
  • Title

    Guarantee-Based Access Control

  • Author

    Hussain, Mohammed ; Skillicorn, D.B.

  • Author_Institution
    Sch. of Comput., Queen´´s Univ., Kingston, ON, Canada
  • Volume
    3
  • fYear
    2009
  • fDate
    29-31 Aug. 2009
  • Firstpage
    201
  • Lastpage
    206
  • Abstract
    New Web technologies, such as the semantic Web and the social Web, have changed the way services and information are accessed. These new technologies allow more usable and interoperable services to be realized. They help service providers to reach more individuals. Automatic service discovery and invocation can also benefit from these technologies.Unfortunately, several threats to security, privacy, and trust come along with these benefits. For example, making services interoperable increases the chance of profiling individuals, which constitutes a privacy threat. Security measures, such as access control, should handle the potential threats of opening previously encapsulated Web services.We present a new access-control model, guarantee-based access control (GBAC). The new model constructs certificates based on guarantees rather than attributes. These guarantees are then used as the basis for access-control decisions. The model also permits access rights to be based on a set of individuals in a particular structured relationship. Thus, GBAC resists threats to individuals´ privacy, such as profiling, whether access decisions are based on the participation of one or more individuals. The model suits the open nature of new Web technologies.
  • Keywords
    Internet; Web services; authorisation; data privacy; open systems; Web services; Web technologies; automatic service discovery; data privacy; guarantee-based access control model; interoperable services; semantic Web; service providers; social Web; Access control; Bioinformatics; Genomics; Information security; Permission; Privacy; Protection; Resists; Semantic Web; Web services; Access Control; Privacy; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Science and Engineering, 2009. CSE '09. International Conference on
  • Conference_Location
    Vancouver, BC
  • Print_ISBN
    978-1-4244-5334-4
  • Electronic_ISBN
    978-0-7695-3823-5
  • Type

    conf

  • DOI
    10.1109/CSE.2009.143
  • Filename
    5283490