spacer
spacer search

Software Engineering for Service-Oriented Overlay Computers
Software Engineering for Service-Oriented Overlay Computers

Search
spacer
 
header
Main Menu
 
Home arrow Publications arrow All Publications

SENSORIA All Publications Print

Copyright Information
The documents distributed by this server have been provided by the contributing authors as a means to ensure timely dissemination of scholarly and technical work on a noncommercial basis. Copyright and all rights therein are maintained by the authors or by other copyright holders, notwithstanding that they have offered their works here electronically. It is understood that all persons copying this information will adhere to the terms and constraints invoked by each author's copyright. These works may not be reposted without the explicit permission of the copyright holder.

show main publications


Minimal Disclosure in Hierarchical Hippocratic Databases with Delegation


@INPROCEEDINGS{mass-mylo-zann-05-ESORICS,
  title = {{Minimal Disclosure in Hierarchical Hippocratic Databases with Delegation}},
  author = {{Fabio} {Massacci} and {John} {Mylopolous} and {Nicola} {Zannone}},
  booktitle = {Proceedings of the 10th European Symposium on Research in Computer Security (ESORICS 2005). September 12th-14th, 2005. Milan (Italy)},
  pages = {438--454},
  abstract = {Hippocratic Databases have been proposed as a mechanism to guarantee the respect of privacy principles in data management. We argue that three major principles are missing from the proposed mechanism: hierarchies of purposes, delegation of tasks and authorizations (i.e. outsourcing), and the minimal disclosure of private information. In this paper, we propose a flexible framework for the negotiation of personal information among customers and (possibly virtual) enterprises based on user preferences when enterprises may adopt different processes to provide the same service. We use a goal-oriented approach to analyze the purposes of a Hippocratic system and derive a purpose and delegation hierarchy. Based on this hierarchy, effective algorithms are given to determine the minimum set of authorizations needed for a service. In this way, the minimal authorization table of a global business process can be automatically constructed from the collection of privacy policy tables associated with the collaborating enterprises. By using effective on-line algorithms, the derivation of such minimal information can also be done on-the-fly by the customer wishing to use the services of a virtual organization.},
  publisher = {Springer Berlin / Heidelberg},
  series = {LNCS},
  volume = {3679},
  year = {2005},
  url = {http://dit.unitn.it/~zannone/publication/mass-mylo-zann-05-ESORICS.pdf},
  doi = {http://dx.doi.org/10.1007/11555827_25},
  status = {public},
  task = {T3.1, T7.3},
}

spacer

The Sensoria Project Website
2005 - 2010
spacer