Privacy Issues in Access Control of Web Services: An Appraisal
نویسندگان
چکیده
Privacy is the right of individuals to determine for themselves when, how and to what extent information about them is communicated to others. Due to the rapid growth in popularity of web services, the complexity of their access control policies is also rising, thus, increasing the likelihood of inadvertent privacy disclosures. Anyone involved in e-business transactions would believe that it is axiomatic that privacy is a building block of effective collaborations of web services. Most of the stakeholders are reluctant to use web services as they are not confident about the privacy preservation of their credentials and this attitude is hampering the growth of web based businesses. These web services collect, store, process and share information about lakhs of citizens, who have different notions and preferences related to their Privacy. This promotes a number of ethical, legal and technical issues that must be addressed at a global level to preserve online privacy of e-Citizens. This paper provides an appraisal of privacy related works in web services access control process.
منابع مشابه
A model for specification, composition and verification of access control policies and its application to web services
Despite significant advances in the access control domain, requirements of new computational environments like web services still raise new challenges. Lack of appropriate method for specification of access control policies (ACPs), composition, verification and analysis of them have all made the access control in the composition of web services a complicated problem. In this paper, a new indepe...
متن کاملA centralized privacy-preserving framework for online social networks
There are some critical privacy concerns in the current online social networks (OSNs). Users' information is disclosed to different entities that they were not supposed to access. Furthermore, the notion of friendship is inadequate in OSNs since the degree of social relationships between users dynamically changes over the time. Additionally, users may define similar privacy settings for their f...
متن کاملHealth Insurance Portability and Accountability Act (HIPPA) Compliant Access Control Model for Web Services
Health Insurance Portability and Accountability Act of 1996 (HIPAA) is a set of rules to be followed by health plans, doctors, hospitals, and other healthcare providers in the U.S. HIPAA privacy rules create national standards to protect individuals’ health information. Recently, there have been increasing demands and discussions about Web services-based healthcare applications. It is, therefor...
متن کاملRunning head: Policies for Web Security Services Policies for Web Security Services
This chapter analyzes the various types of policies implemented by the web security services. According to X.800 definition five are the basic web security services categories: authentication, non-repudiation, access control, data integrity and data confidentiality. In this chapter we discuss access control and data privacy services. Access control services may adopt various models according to...
متن کاملComposing Access Control Policies for Semantic Web Services
Semantic web services promise a lot of new features like automatic discovery, composition, simulation and verfication to name a few. However, several security related issues have to be resolved before semantic web services can be employed in typical business scenarios. In this paper, we present an approach to enable access control for semantic web services. Our approach builds on the idea of au...
متن کامل