• DocumentCode
    74479
  • Title

    Collaborative Policy Administration

  • Author

    Weili Han ; Zheran Fang ; Yang, L.T. ; Gang Pan ; Zhaohui Wu

  • Author_Institution
    Software Sch., Fudan Univ., Shanghai, China
  • Volume
    25
  • Issue
    2
  • fYear
    2014
  • fDate
    Feb. 2014
  • Firstpage
    498
  • Lastpage
    507
  • Abstract
    Policy-based management is a very effective method to protect sensitive information. However, the overclaim of privileges is widespread in emerging applications, including mobile applications and social network services, because the applications´ users involved in policy administration have little knowledge of policy-based management. The overclaim can be leveraged by malicious applications, then lead to serious privacy leakages and financial loss. To resolve this issue, this paper proposes a novel policy administration mechanism, referred to as collaborative policy administration (CPA for short), to simplify the policy administration. In CPA, a policy administrator can refer to other similar policies to set up their own policies to protect privacy and other sensitive information. This paper formally defines CPA and proposes its enforcement framework. Furthermore, to obtain similar policies more effectively, which is the key step of CPA, a text mining-based similarity measure method is presented. We evaluate CPA with the data of Android applications and demonstrate that the text mining-based similarity measure method is more effective in obtaining similar policies than the previous category-based method.
  • Keywords
    data mining; data privacy; mobile computing; social networking (online); text analysis; Android applications; CPA; category-based method; collaborative policy administration; enforcement framework; financial loss; malicious applications; mobile applications; policy administration; policy-based management; privacy leakages; sensitive information; social network services; text mining-based similarity measure method; Algorithm design and analysis; Androids; Collaboration; Humanoid robots; Indexes; Security; Social network services; Android; Collaborative policy administration; mobile applications; policy-based management; social network services;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2013.147
  • Filename
    6519234