Font Size: a A A

Delegation of Access Rights in A Privacy Preserving Access Control Model

Posted on:2012-12-24Degree:M.ScType:Thesis
University:University of Calgary (Canada)Candidate:Moniruzzaman, MdFull Text:PDF
GTID:2468390011458247Subject:Computer Science
Abstract/Summary:PDF Full Text Request
Delegation is a process of sharing access rights by users of an access control model. It facilitates the distribution of authorities in the model. It is also useful in collaborative environments. Despite the advantages, delegation may have an impact on the access control model's security. Allowing users to share access rights without the control of an administrator can be used by malicious users to exploit the model. Delegation may also result in privacy violations if it allows accessing data without the data provider's consent. Even though the consent is taken, the privacy can still be violated if the data is used differently than the data provider agreed. This thesis investigates data privacy in delegation. As a contribution, a privacy model is introduced that allows a data provider setting privacy policies to state how their data should be used by different organizations or parties that are interested in their data. Based on this setting, a delegation model is designed to consider the privacy policies of data in taking delegation decisions and also, set the data usage criteria for the access right receivers. In addition to privacy policies, several delegation policies and constraints have been used to control delegation operations. Delegation is studied within a party and between two parties.
Keywords/Search Tags:Delegation, Access, Model, Privacy, Data, Used, Policies
PDF Full Text Request
Related items