Wednesday, 21 March 2012

Protecting privacy in information systems

As amalgamate advice systems with differing aloofness rules are commutual and advice is shared, action accessories will be appropriate to reconcile, accomplish and adviser an accretion bulk of aloofness action rules (and laws). There are two categories of technology to abode aloofness aegis in bartering IT systems: advice and enforcement.

Policy Communication

P3P - The Platform for Aloofness Preferences. P3P is a accepted for communicating aloofness practices and comparing them to the preferences of individuals.

Policy Enforcement

XACML - The Extensible Access Control Markup Accent calm with its Aloofness Profile is a accepted for cogent aloofness behavior in a machine-readable accent which a software arrangement can use to accomplish the action in action IT systems.

EPAL - The Action Aloofness Authorization Accent is actual agnate to XACML, but is not yet a standard.

WS-Privacy - "Web Account Privacy" will be a blueprint for communicating aloofness action in web services. For example, it may specify how aloofness action advice can be anchored in the SOAP envelope of a web account message.

Protecting Aloofness on the Internet

On the internet you about consistently accord abroad a lot of advice about yourself: Unencrypted e-mails can be apprehend by the administrators of the e-mail server, if the affiliation is not encrypted (no https), and aswell the internet account provider and added parties sniffing the cartage of that affiliation are able to apperceive the contents. Furthermore, the aforementioned applies to any affectionate of cartage generated on the internet (webbrowsing, burning messaging, ...) In adjustment not to accord abroad too abundant claimed information, e-mails can be encrypted and browsing of webpages as able-bodied as added online activities can be done traceless via anonymizers, or, in cases those are not trusted, by accessible antecedent broadcast anonymizers, so alleged mix nets. Renowned open-source mix nets are I2P - The Anonymous Network or tor.

No comments:

Post a Comment