Macquarie Home | Course Handbook | Library | Campus Map | Macquarie Contacts
Home page

Macquarie University ResearchOnline

Home
Add
-List Of Titles -Towards unconditional anonymity : privacy enforcement model in web services

Please use this identifier to cite or link to this item: http://hdl.handle.net/1959.14/118629

24 Visitors 26 Hits 0 Downloads
FileDescriptionSizeFormat
DS01Publisher version (open access)501 KBAdobe Acrobat PDFView/Open
Title
Towards unconditional anonymity : privacy enforcement model in web services
Related
IEEE Congress on Services (2nd : 2008) (23 - 26 September 2008 : Beijing)
Related
2008 IEEE Congress on Services : SERVICES 2008 : Part 2 : 23-26 September 2008, Beijing, China, p.26-33
DOI
10.1109/SERVICES-2.2008.8
Publisher
Los Alamitos, Calif : IEEE Computer Society
Date
2008
FoR/RFCD Code(s)
080600 Information Systems
Author/Creator
Yang, Yong
Author/Creator
Yang, Jian
Description
Privacy in Web services is of great importance and a critical requirement for any business and non-business environments. The growth of Web services has been accompanied by sharing more and more user personal information with Web service providers between diverse and heterogeneous computing systems, which has raised concern about possible malicious or accidental unauthorized abuse of user information. The security assertion markup language (SAML) architecture is an XML standard for exchanging authentication and authorization data. However privacy preserving in SAML is inadequate for user privacy protection. In this paper, the SAML architecture is extended to address this shortcoming. A privacy enforcement model-based on ring signature is presented, which provides unconditional anonymity for Web service users. This model enables verification of individuals who belong to a specific group with access right without actually being identified by their IDs or names. Therefore the risk of information leak is reduced. Furthermore, even if the third party is corrupted or the ID correspondence relationship is leaked, the individual remains unrecognizable. Meanwhile most SAML authorization between individual and web services can be done without the presence of the third party, which largely decreases communication overhead and enhances the privacy. Finally, a web services conversation establishment protocol is constructed based on this model, which has been implemented in Java/Tomcat.
Description
8 page(s)
Subject Keyword
080600 Information Systems
Resource Type
conference paper
Organisation
Macquarie University. Dept. of Computing

Identifier
http://hdl.handle.net/1959.14/118629
Identifier
ISBN:9780769533131
Identifier
mq-rm-2009008395
Language
eng
Rights
Copyright 2008 IEEE. Reprinted from 2008 IEEE Congress on Services : SERVICES 2008 : Part 2 : 23-26 September 2008, Beijing, China. This material is posted here with permission of the IEEE. Such permission of the IEEE does not in any way imply IEEE endorsement of any of Macquarie University’s products or services. Internal or personal use of this material is permitted. However, permission to reprint/republish this material for advertising or promotional purposes or for creating new collective works for resale or redistribution must be obtained from the IEEE by writing to pubs-permissions@ieee.org. By choosing to view this document, you agree to all provisions of the copyright laws protecting it.
Full Text
Full Text
Reviewed
Reviewed
 
Image Thumbnail
Save/E-mail Citation
Citation Format
E-mail Address
Subject
"2008 IEEE Congress on Services : SERVICES 2008 : Part 2 : 23-26 September 2008, Beijing, China"
 
OR
  • Show All  
  • Show My Selections 
Advanced Search

Search

Browse

  • By Title 
  • By Author/Creator 
  • By Department/Centre 
  • By Subject Keyword 
  • By Journal/Conference 
  • By FoR/RFCD codes 
  • By Resource Type 
  • By Date 

Highlights

  • Most Accessed Objects 
  • Recent Additions 
  • Pending Publications 
  • Author Profiles 

Resources

  • About ResearchOnline 
  • FAQ 
  • Open Access 
  • Open Access-FAQs 
  • Copyright 
  • Contribute 
  • Help 
  • Contact
  • Terms and Conditions 
Valid XHTML 1.0 Strict Powered by VITAL

Copyright Macquarie University | Privacy Statement | Accessibility Information

ABN 90 952 801 237 | CRICOS Provider No 00002J

Library Staff Sign In