Abstract
This paper presents OPENi’s Personal Cloudlets framework as a novel approach to enhancing users access control and privacy over their persinal data on a cloud-based platform. This paper describes the OPENi concepts and the requirements that influenced the design and implementation of OPENi’s Personal Cloudlet Framework. We describe the architecture and how OPENi, through the use of REST based endpoints, object-based access control, OPENi Types, and stateless JSON Web Token (JWT), allows users share, reuse, and control access to their data across many mobile applications while maintaining cloud scalability. This paper also describes how a number of the Personal Cloudlet framework’s features enhance a users privacy and control. These features include the User Dashboard, the Privacy Preserving Data Aggregator, and the fine grained access control mechanism.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Similar content being viewed by others
Notes
- 1.
OPENi Objectives, http://www.openi-ict.eu/objectives/.
- 2.
PEAT - Personal Data, Apis, and Trust, http://www.peat-platform.org/.
References
Apache Cordova. http://cordova.apache.org/. Accessed 15 October 2015
Couchbase Server. http://www.couchbase.com/. Accessed 15 January 2015
Docker: Build, Ship and Run Any App, Anywhere. https://www.docker.com/. Accessed 15 January 2015
Google Cloud Messaging for Android. https://developer.android.com/google/gcm/index.html. Accessed 15 January 2015
JSON Web Token (JWT). http://jwt.io/. Accessed 15 January 2015
Mongrel2. http://mongrel2.org/. Accessed 15 January 2015
OPENi - Open-Source, Web-Based, Framework for Integrating Applications with Cloud-based Services and Personal Cloudlets. http://www.openi-ict.eu/. Accessed 15 January 2015
OPENi open source project. https://github.com/OPENi-ict/. Accessed 15 January 2015
ZeroMQ. http://zeromq.org/. Accessed 15 January 2015
Doyle, K., McCarthy, D.: OPENi White Paper: An End Users Perspective: Digital Identity Putting the Genie Back in the Bottle, September 2014. http://www.openi-ict.eu/wp-content/uploads/2014/07/openi_whitepaper.pdf. Accessed 15 January 2015
Illera, R., Ortega, S., Petychakis, M.: OPENi Deliverable D2.3: Security and Privacy Considerations for Cloud-based Services and Cloudlets, January 2013. http://www.openi-ict.eu/wp-content/uploads/2013/11/OPENi_D2.3.pdf. Accessed 15 January 2015
Iosif, A., et al.: A community-based, graph API framework to integrate and orchestrate cloud-based services. In: Proceedings of AICCSA. IEEE Computer Society (2014), awaiting publication
Kleinfeld, R., et al.: OPENi Deliverable D3.6: OPENi Security and Privacy Specification, September 2014. http://www.openi-ict.eu/wp-content/uploads/2014/10/OPENi_D3.6.pdf. Accessed 15 January 2015
McCarthy, D., et al.: OPENi Deliverable D3.5: OPENi Cloudlet Framework Design Document, September 2014. http://www.openi-ict.eu/wp-content/uploads/2014/10/OPENi_D3.5.pdf. Accessed 15 January 2015
Mogul, R.: Data Security Lifecycle 2.0, September 2014. https://www.securosis.com/blog/data-security-lifecycle-2.0. Accessed 15 January 2015
Biliri, E., Tsouroplis, R., Lampathaki, F., Askounis, D., Petychakis, M., Alvertis, I.: Enterprise collaboration framework for managing, advancing and unifying the functionality of multiple cloud-based services with the help of a graph API. In: Camarinha-Matos, L.M., Afsarmanesh, H. (eds.) Collaborative Systems for Smart Networked Environments. IFIP AICT, vol. 434, pp. 153–160. Springer, Heidelberg (2014)
Acknowledgment
The research and subsequent implementation reported in this paper has been funded by the European Community’s Seventh Framework Programme (FP7) under grant agreement FP7-ICT-317883.
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2015 Springer International Publishing Switzerland
About this paper
Cite this paper
McCarthy, D. et al. (2015). Privacy Aware Access Control for Cloud-Based Data Platforms. In: Cleary, F., Felici, M. (eds) Cyber Security and Privacy. CSP 2015. Communications in Computer and Information Science, vol 530. Springer, Cham. https://doi.org/10.1007/978-3-319-25360-2_3
Download citation
DOI: https://doi.org/10.1007/978-3-319-25360-2_3
Published:
Publisher Name: Springer, Cham
Print ISBN: 978-3-319-25359-6
Online ISBN: 978-3-319-25360-2
eBook Packages: Computer ScienceComputer Science (R0)