Location attestation and access control for mobile devices using GeoXACML
Arunkumar, S., Soyluoglu, B., Sensoy, M. , Srivatsa, M. & Rajarajan, M. (2017). Location attestation and access control for mobile devices using GeoXACML. Journal of Network and Computer Applications, 80, pp. 181-188. doi: 10.1016/j.jnca.2016.11.028
Abstract
Access control has been applied in various scenarios in the past for negotiating the best policy. Solutions with XACML for access control has been very well explored by research and have resulted in significant contributions to various sectors including healthcare. In controlling access to the sensitive data such as medical records, it is important to guarantee that the data is accessed by the right person for the right reason. Location of access requestor can be a good indication for his/her eligibility and reasons for accessing the data. To reason with geospatial information for access control, Geospatial XACML (eXtensible Access Control Markup Language) is proposed as a standard. However, there is no available implementation and architecture for reasoning with Geospatial XACML policies. This paper proposes to extend XACML with geohashing to implement geospatial policies. It also proposes an architecture for checking reliability of the geospatial information provided by clients. With a case study, we demonstrate how our framework can be used to control the privacy and data access of health service data in handheld devices.
Publication Type: | Article |
---|---|
Publisher Keywords: | GeoXACML; Geospatial; Access control |
Subjects: | Q Science > QA Mathematics > QA76 Computer software T Technology > TK Electrical engineering. Electronics Nuclear engineering |
Departments: | School of Science & Technology > Engineering |
SWORD Depositor: |
Available under License Creative Commons Attribution Non-commercial No Derivatives.
Download (2MB) | Preview
Export
Downloads
Downloads per month over past year