A Privacy-Aware Access Control Model for Distributed Network Monitoring - Archive ouverte HAL Access content directly
Journal Articles Computers and Electrical Engineering Year : 2013

A Privacy-Aware Access Control Model for Distributed Network Monitoring

Abstract

In this paper, we introduce a new access control model that aims at addressing the privacy implications surrounding network monitoring. In fact, despite its importance, network monitoring is natively leakage-prone and, moreover, this is exacerbated due to the complexity of the highly dynamic monitoring procedures and infrastructures, that may include multiple traffic observation points, distributed mitigation mechanisms and even inter-operator cooperation. Conceived on the basis of data protection legislation, the proposed approach is grounded on a rich in expressiveness information model, that captures all the underlying monitoring concepts along with their associations. The model enables the specification of contextual authorisation policies and expressive separation and binding of duty constraints. Finally, two key innovations of our work consist in the ability to define access control rules at any level of abstraction and in enabling a verification procedure, which results in inherently privacy-aware workflows, thus fostering the realisation of the Privacy by Design vision.
Fichier principal
Vignette du fichier
A_Privacy-Aware_Access_Control_Model_for_Distributed_Network_Monitoring.pdf (389.69 Ko) Télécharger le fichier
Origin : Files produced by the author(s)
Loading...

Dates and versions

hal-00949776 , version 1 (20-02-2014)

Identifiers

Cite

Eugenia I. Papagiannakopoulou, Maria N. Koukovini, Georgios V. Lioudakis, Joaquin Garcia Alfaro, Dimitra I. Kaklamani, et al.. A Privacy-Aware Access Control Model for Distributed Network Monitoring. Computers and Electrical Engineering, 2013, 39 (7), pp.2263-2281. ⟨10.1016/j.compeleceng.2012.08.003⟩. ⟨hal-00949776⟩
271 View
414 Download

Altmetric

Share

Gmail Facebook X LinkedIn More