To main content

A Cloud Accountability Policy Representation Framework

Abstract

Nowadays we are witnessing the democratization of cloud services. As a result, more and more end-users (individuals and businesses) are using these services for achieving their electronic transactions (shopping, administrative procedures, B2B transactions, etc.). In such scenarios, personal data is generally flowed between several entities and end-users need (i) to be aware of the management, processing, storage and retention of personal data, and (ii) to have necessary means to hold service providers accountable for the usage of their data. In fact, dealing with personal data raises several privacy and accountability issues that must be considered before to promote the use of cloud services. In this paper, we propose a framework for the representation of cloud accountability policies. Such policies offer to end-users a clear view of the privacy and accountability obligations asserted by the entities they interact with, as well as means to represent their preferences. This framework comes with two novel accountability policy languages; an abstract one, which is devoted for the representation of preferences/obligations in an human readable fashion, a concrete one for the mapping to concrete enforceable policies. We motivate our solution with concrete use case scenarios.

Category

Academic chapter/article/Conference paper

Language

English

Author(s)

  • Walid Benghabrit
  • Hervé Grall
  • Jean-Claude Royer
  • Mohamed Sellami
  • Monir Azraoui
  • Kaoutar Elkhiyaoui
  • Melek Önen
  • Anderson Santana De Oliviera
  • Karin Bernsmed

Affiliation

  • Ecole des Mines de Nantes
  • Institut Eurecom, School of Engineering and Research Center
  • France
  • SINTEF Digital / Software Engineering, Safety and Security

Year

2014

Publisher

SciTePress

Book

CLOSER 2014 - Proceedings of the 4th International Conference on Cloud Computing and Services Science, Barcelona, Spain, 3-5 April, 2014

ISBN

978-989-758-019-2

Page(s)

489 - 498

View this publication at Cristin