Policies models and tools for collaborative applications

E. Bertino
{"title":"Policies models and tools for collaborative applications","authors":"E. Bertino","doi":"10.1109/COLCOM.2007.4553883","DOIUrl":null,"url":null,"abstract":"Policies are at the heart of any assured information sharing infrastructure for collaborative applications and may include those for access control, trust and accountability. Policies can be a key component in deciding what and how much to reveal in the discovery stage for both information seekers and providers. Policies can also drive the process of negotiation in the acquisition and release stage. Policies are needed to monitor and enforce usage control as well as for auditing and accountability. Fine-grained policy integration algorithms are needed to support dynamic coalitions and virtual organizations that need to quickly share and integrate information. Policies must adapt, based on events and contexts, to support continuous access to critical information resources. Enforcement mechanisms are also needed to allow different parties to take joint decisions about data accesses. In this talk, we will first discuss the various policies that are relevant in the context of secure information sharing across collaborating organizations. We will then focus on tools for policy similarity analysis, focusing on the case of policies expressed in XACML, and then we will present a reference architecture for collaborative enforcement of access control policies.","PeriodicalId":340691,"journal":{"name":"2007 International Conference on Collaborative Computing: Networking, Applications and Worksharing (CollaborateCom 2007)","volume":"31 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-11-12","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2007 International Conference on Collaborative Computing: Networking, Applications and Worksharing (CollaborateCom 2007)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/COLCOM.2007.4553883","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Policies are at the heart of any assured information sharing infrastructure for collaborative applications and may include those for access control, trust and accountability. Policies can be a key component in deciding what and how much to reveal in the discovery stage for both information seekers and providers. Policies can also drive the process of negotiation in the acquisition and release stage. Policies are needed to monitor and enforce usage control as well as for auditing and accountability. Fine-grained policy integration algorithms are needed to support dynamic coalitions and virtual organizations that need to quickly share and integrate information. Policies must adapt, based on events and contexts, to support continuous access to critical information resources. Enforcement mechanisms are also needed to allow different parties to take joint decisions about data accesses. In this talk, we will first discuss the various policies that are relevant in the context of secure information sharing across collaborating organizations. We will then focus on tools for policy similarity analysis, focusing on the case of policies expressed in XACML, and then we will present a reference architecture for collaborative enforcement of access control policies.
协作应用程序的策略、模型和工具
策略是协作应用程序的任何有保证的信息共享基础设施的核心,可能包括访问控制、信任和责任。策略可以是决定在发现阶段为信息搜索者和提供者揭示什么和揭示多少的关键组件。政策还可以推动收购和发布阶段的谈判过程。需要策略来监视和执行使用控制,以及审计和问责制。需要细粒度的策略集成算法来支持需要快速共享和集成信息的动态联盟和虚拟组织。策略必须根据事件和上下文进行调整,以支持对关键信息资源的持续访问。执行机制也需要允许不同的各方对数据访问作出共同的决定。在本次演讲中,我们将首先讨论与跨协作组织的安全信息共享上下文中相关的各种策略。然后,我们将重点介绍用于策略相似性分析的工具,重点介绍用XACML表示的策略的情况,然后我们将介绍用于协作实施访问控制策略的参考体系结构。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信