Towards enforcement of purpose for privacy policy in distributed healthcare

Thavy Mony Annanda Rath, Jean-Noël Colin

Résultats de recherche: Contribution dans un livre/un catalogue/un rapport/dans les actes d'une conférenceArticle dans les actes d'une conférence/un colloque

115 Téléchargements (Pure)

Résumé

Purpose of access is one of the core concepts in privacy which considers the data user's intent as a factor in making access control decisions and enforcement of purpose is required to ensure that data is used as what it intends for. In general, the enforcement of purpose is a complicated task. The main difficulty is how to identify the purpose of an agent when it requests to perform an action. In this paper, we discuss the design issue of purpose enforcement based on our proposed (defined) enforcement structure: pre-enforcement, ongoing-enforcement, and post-enforcement. We also propose an enforcement solution for usage control designed for distributed healthcare information system, particularly, the pre-enforcement of purpose (the validation of claimed purpose at the initial state before data is granted access).

langue originaleAnglais
titre2013 IEEE 10th Consumer Communications and Networking Conference, CCNC 2013
Pages881-886
Nombre de pages6
Les DOIs
Etat de la publicationPublié - 15 avr. 2013
Evénement2013 IEEE 10th Consumer Communications and Networking Conference, CCNC 2013 - Las Vegas, États-Unis
Durée: 11 janv. 201314 janv. 2013

Une conférence

Une conférence2013 IEEE 10th Consumer Communications and Networking Conference, CCNC 2013
Pays/TerritoireÉtats-Unis
La villeLas Vegas
période11/01/1314/01/13

Empreinte digitale

Examiner les sujets de recherche de « Towards enforcement of purpose for privacy policy in distributed healthcare ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation