Towards Privacy-Enhancing Identity Management in Mashup-Providing Platforms

نویسندگان

  • Jan Zibuschka
  • Matthias Herbert
  • Heiko Rossnagel
چکیده

Mashups empower users to easily combine and connect resources from independent Web-based sources and domains. However, these characteristics also introduce new and amplify existing security and privacy problems. This is especially critical in the emerging field of enterprise Mashups. Despite several contributions in the field of Mashup security the issue of protecting exchanged resources against the Mashupproviding Platform has generally been neglected. In this contribution we address the security challenges of server-side Mashup-providing Platforms with the aim of minimizing the required amount of trust. We achieve this by implementing a privacy-enhancing identity management system into the Mashup-providing Platform using Reverse Identity Based Encryption.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Challenges to Privacy in Social Networking Mashups

Social networking provides opportunities to expand the nature of existing applications and user activities in cyberspace. Consider the idea of “social TV”. Along with these opportunities to combine activities such as social networking and TV or entertainment, comes an interesting set of challenges to the privacy of identity information. In this paper we will examine a key set of these challenge...

متن کامل

Secure Mashups For ID Management With In-Browser Cryptography Support

This paper addresses the identity management problems in modern Web-2.0based mashup applications. We present Web2ID, a new identity management framework tailored for mashup applications. Web2ID leverages a secure mashup framework and enables transfer of credentials between service providers and consumers. We also describe a new relay framework in which communication between two service provider...

متن کامل

Towards Privacy-preserving Data-as-a-Service Mashups

Data-as-a-Service (DaaS) is a paradigm that provides data on demand to consumers across different cloud platforms over the Internet. Yet, a single DaaS provider may not be able to fulfill a data request. Consequently, the concept of DaaS mashup was introduced to enable DaaS providers to dynamically integrate their data on demand depending on consumers’ requests. Utilizing DaaS mashup, however, ...

متن کامل

On the Viability of Privacy-Enhancing Technologies in a Self-Regulated Business-to-Consumer Market: Will Privacy Remain a Luxury Good?

The collection of personal data in business-to-consumer transactions and respecting the consumers’ privacy preferences are fundamentally competing goals. This paper studies the effects of emerging user-controlled privacy-enhancing technologies on supply-side decision making with respect to technology adoption and pricing strategies. In particular, identity management systems that allow buyers t...

متن کامل

Identity management of e-ID, privacy and security in Europe. A human rights view

With privacy enhancing identity management, end users are given better ways for managing their identities for specific contexts. One could easily argue that the need to implement identity management systems that are privacy enhancing follows from the EU data protection regulation. One of the challenges while developing privacy enhancing identity management is getting governments to become genui...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010