Privacy Preserving Enforcement of Sensitive Policies in Outsourced and Distributed Environments
Muhammad Rizwan Asghar

TL;DR
This paper presents novel privacy-preserving policy enforcement mechanisms for untrusted environments like cloud and opportunistic networks, ensuring confidentiality and secure access control without revealing sensitive policy information.
Contribution
It introduces new methods for enforcing sensitive policies in untrusted environments, maintaining confidentiality, supporting expressive policies, and scalable key management, with a practical smartphone prototype.
Findings
Full policy confidentiality in outsourced environments
Privacy-preserving content matching in opportunistic networks
Prototype implementation demonstrating performance
Abstract
The enforcement of sensitive policies in untrusted environments is still an open challenge for policy-based systems. On the one hand, taking any appropriate security decision requires access to these policies. On the other hand, if such access is allowed in an untrusted environment then confidential information might be leaked by the policies. The key challenge is how to enforce sensitive policies and protect content in untrusted environments. In the context of untrusted environments, we mainly distinguish between outsourced and distributed environments. The most attractive paradigms concerning outsourced and distributed environments are cloud computing and opportunistic networks, respectively. In this dissertation, we present the design, technical and implementation details of our proposed policy-based access control mechanisms for untrusted environments. First of all, we provide…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCryptography and Data Security · Privacy-Preserving Technologies in Data · Blockchain Technology Applications and Security
