On Effective Protection of Security and Privacy in XML Information Brokering
نویسنده
چکیده
In contrast with the situations when the information seeker knows where the needed data is located, XML Information Brokering System (IBS) needs to help each information seeking query ”locate” the corresponding data source(s). Unlike early information sharing approaches that only involve a small number of databases, new information sharing applications are often assumed to be built atop a large volume of geographically distributed databases, such as emergence health care. Moreover, with increasing concerns on protecting the sensitive and/or proprietary data, the organizations prefer sharing data in a more secure and privacy-preserving manner, instead of establishing a purely full trust relationship and releasing the control over the shared data. In this paper, we explore new information sharing infrastructures to address the new challenges on security, privacy, load balancing, trust management and scalability. In this work, we present a flexible and scalable XML IBS using a broker-coordinator overlay network. Through a novel automaton segmentation scheme, in-network access control, distributed load balancing, trust management and query segment encryption, our system integrates security enforcement and query forwarding while preserving systemwide privacy. We first explore access control deployment strategies in distributed information sharing and the impacts of different deployment strategies on system-wide performance and security. From our study, we are motivated to enforce in-network access control by combining query security checking function with query routing function in Query Brokers and coordinators while maintaining distributed load balancing among peers. We perform a formal presentation of the threat models with a focus on two attacks: attribute-correlation attack and inference attack. Then, we propose a broker-coordinator overlay, as well as three schemes, automaton segmentation scheme, query segment encryption scheme and trust management scheme to share the secure query routing function among a set of brokering servers. We carried out a comprehensive analysis on privacy, end-to-end performance, load balancing and scalability, the proposed system integrate security enforcement, load balancing, trust management between peers and query routing while preserving system-wide privacy with reasonable overhead. Keywords— Privacy, XML, Access Control, load balancing, information sharing, peer to peer, PPIB
منابع مشابه
Analyzing Tools and Algorithms for Privacy Protection and Data Security in Social Networks
The purpose of this research, is to study factors influencing privacy concerns about data security and protection on social network sites and its’ influence on self-disclosure. 100 articles about privacy protection, data security, information disclosure and Information leakage on social networks were studied. Models and algorithms types and their repetition in articles have been distinguished a...
متن کاملAnalysis and Evaluation of Privacy Protection Behavior and Information Disclosure Concerns in Online Social Networks
Online Social Networks (OSN) becomes the largest infrastructure for social interactions like: making relationship, sharing personal experiences and service delivery. Nowadays social networks have been widely welcomed by people. Most of the researches about managing privacy protection within social networks sites (SNS), observes users as owner of their information. However, individuals cannot co...
متن کاملAn Architecture for Security and Protection of Big Data
The issue of online privacy and security is a challenging subject, as it concerns the privacy of data that are increasingly more accessible via the internet. In other words, people who intend to access the private information of other users can do so more efficiently over the internet. This study is an attempt to address the privacy issue of distributed big data in the context of cloud computin...
متن کاملA Sudy on Information Privacy Issue on Social Networks
In the recent years, social networks (SN) are now employed for communication and networking, socializing, marketing, as well as one’s daily life. Billions of people in the world are connected though various SN platforms and applications, which results in generating massive amount of data online. This includes personal data or Personally Identifiable Information (PII). While more and more data a...
متن کاملPrivacy and Security of Big Data in THE Cloud
Big data has been arising a growing interest in both scien- tific and industrial fields for its potential value. However, before employing big data technology into massive appli- cations, a basic but also principle topic should be investigated: security and privacy. One of the biggest concerns of big data is privacy. However, the study on big data privacy is still at a very early stage. Many or...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014