首页> 外文会议>Privacy, Security, Trust and the Management of e-Business, 2009. CONGRESS '09 >Protecting Privacy of Sensitive Data Dissemination Using Active Bundles
【24h】

Protecting Privacy of Sensitive Data Dissemination Using Active Bundles

机译:使用活动捆绑包保护敏感数据分发的隐私

获取原文

摘要

The solution for protecting data privacy proposed in this paperu00026;#8212, called Active Bundlesu00026;#8212, protects sensitive data from their disclosure to unauthorized parties and from unauthorized dissemination (even if started by an authorized party). The Active Bundles solution protects private or sensitive data throughout their entire lifecycle, from creation through dissemination to partial or total destruction (such as evaporation or apoptosis defined in the paper). In addition, it protects identity of entities exchanging private data. The core of the solution are active bundles themselves, which are containers with a payload of sensitive data, metadata, and a virtual machine specific to the active bundle. Metadata control access to private data and dissemination of active bundles. The main virtual machine roles are: validating integrity of its active bundle, and enforcing access control policies and dissemination policies for data of the active bundle. The Active Bundles solution also includes the active bundle exchange protocol for transmitting the bundles between hosts. The protocol uses buddies to provide anonymity to senders and receivers. The performance of the Active Bundles solution for data dissemination is evaluated analytically and by a simulation. The results indicate that: (i) the percentage of sensitive data that reaches unauthorized hosts during dissemination can be high, (ii) the apoptosis mechanism protects sensitive data from dissemination to unauthorized hosts, (iii) the Active Bundles solution provides a level of anonymity to hosts while it does not decrease significantly the throughput of buddies.
机译:本文提出的保护数据隐私的解决方案称为Active Bundlesu00026;#8212,可以保护敏感数据免于泄露给未授权方和未经授权的传播(即使由授权方启动)。 Active Bundles解决方案可在整个生命周期中保护私人或敏感数据,从创建到传播到部分或全部破坏(如本文中定义的蒸发或凋亡)。此外,它还可以保护交换私人数据的实体的身份。解决方案的核心是活动捆绑包本身,活动捆绑包是带有敏感数据,元数据和特定于该活动捆绑包的虚拟机的有效负载的容器。元数据控制对私有数据的访问和有效捆绑的分发。虚拟机的主要角色是:验证其活动捆绑包的完整性,并对活动捆绑包的数据强制执行访问控制策略和分发策略。活动捆绑解决方案还包括用于在主机之间传输捆绑的主动捆绑交换协议。该协议使用伙伴来向发送者和接收者提供匿名性。 Active Bundles解决方案用于数据分发的性能通过分析和仿真进行评估。结果表明:(i)传播过程中到达未授权主机的敏感数据的百分比可能很高;(ii)细胞凋亡机制可以保护敏感数据免于传播给未授权主机;(iii)Active Bundles解决方案提供一定程度的匿名性主机,但不会明显降低伙伴的吞吐量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号