Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
|
 |
Privacy Injector — Automated Privacy Enforcement Through Aspects
| Book Series | Lecture Notes in Computer Science |
| Publisher | Springer Berlin / Heidelberg |
| ISSN | 0302-9743 (Print) 1611-3349 (Online) |
| Volume | Volume 4258/2006 |
| Book | Privacy Enhancing Technologies |
| DOI | 10.1007/11957454 |
| Copyright | 2006 |
| ISBN | 978-3-540-68790-0 |
| Category | 6th Workshop on Privacy Enhancing Technologies |
| DOI | 10.1007/11957454_6 |
| Pages | 99-117 |
| Subject Collection | Computer Science |
| SpringerLink Date | Tuesday, December 12, 2006 |
| |
|
6th Workshop on Privacy Enhancing Technologies
Privacy Injector — Automated Privacy Enforcement Through Aspects
Chris Vanden Berghe1, 2 and Matthias Schunter1 
| (1) |
IBM Research, Zurich Research Laboratory, Säumerstrasse 4, CH-8803 Rüschlikon, Switzerland |
| (2) |
Katholieke Universiteit Leuven, Celestijnenlaan 200A, B-3001 Leuven, Belgium |
Abstract
Protection of personal data is essential for customer acceptance. Even though existing privacy policies can describe how data
shall be handled, privacy enforcement remains a challenge. Especially for existing applications, it is unclear how one can
effectively ensure correct data handling without completely redesigning the applications. In this paper we introduce Privacy
Injector, which allows us to add privacy enforcement to existing applications.
Conceptually Privacy Injector consists of two complementary parts, namely, a privacy metadata tracking and a privacy policy
enforcement part. We show how Privacy Injector protects the complete life cycle of personal data by providing us with a practical
implementation of the “sticky policy paradigm.” Throughout the collection, transformation, disclosure and deletion of personal
data, Privacy Injector will automatically assign, preserve and update privacy metadata as well as enforce the privacy policy.
As our approach is policy-agnostic, we can enforce any policy language that describes which actions may be performed on which
data.
Fulltext Preview (Small, Large)
|
|
|
|
|
|