Privacy issues have hindered centralised authentication approaches from being adopted by a wide range of users. This also applies to authorizations which suffer from privacy problems when stored and processed centrally. We present first steps towards a framework of privacy-aware handling of authorizations. We split up the storage and the processing of access control policies in a user-centric approach. We illustrate our approach at the example of a security infrastructure scenario.
Citation:
Wolfgang Dobmeier, Gunther Pernul, "Towards Privacy-Aware Handling of Authorizations," policy, pp.70-76, Eighth IEEE International Workshop on Policies for Distributed Systems and Networks (POLICY'07), 2007