Accuracy-Constrained Privacy-Preserving Access Control Mechanism for Relational Data
Keywords:
Access Control, K-annonymity, L-diversity, Query Imprecision, privacy, Data Confidentiality.Abstract
Access control mechanisms protect sensitive information from unauthorized users. However, when sensitive information is shared and a Privacy Protection Mechanism (PPM) is not in place, an authorized user can still compromise the privacy of a person leading to identity disclosure. The technique of k-anonymization has been proposed in the literature as an alternative way to release public information, while ensuring both data privacy and data integrity. We prove that two general versions of optimal k-anonymization of relations are NP-hard, including the suppression version which amounts to choosing a minimum number of entries to delete from the relation. The techniques for workload-aware anonymization for selection predicates have been discussed in the literature. we propose heuristics for anonymization algorithms and show empirically that the proposed approach satisfies imprecision bounds for more permissions and has lower total imprecision than the current state of the art.
References
[1] R. Anderson, ªA Security Policy Model for Clinical Information Systems,º Proc. IEEE Symp. Security and Privacy, pp. 30-43, May 1996.
[2] B.A. Davey and H.A. Priestley, Introduction to Lattices and Order. Cambridge Univ. Press, 1990.
[3] L. Sweeney, ªGuaranteeing Anonymity when Sharing Medical Data, the Datafly System,º Proc. J. Am. Medical Informatics Assoc., Washington, DC.: Hanley & Belfus, Inc., 1997.
[4] B. Woodward, ªThe Computer-Based Patient Record Confidentiality, The New England J. Medicine, vol. 333, no. 21, pp. 1419-1422, 1995.
[5] J. Buehler, A. Sonricker, M. Paladini, P. Soper, and F. Mostashari, “Syndromic Surveillance Practice in the United States: Findings from a Survey of State, Territorial, and Selected Local Health Departments,” Advances in Disease Surveillance, vol. 6, no. 3, pp. 1- 20, 2008.
[6] R. Sandhu and Q. Munawer, “The Arbac99 Model for Administration of Roles,” Proc. 15th Ann. Computer Security Applications Conf., pp. 229-238, 1999.
[7] R. Agrawal, P. Bird, T. Grandison, J. Kiernan, S. Logan, and W. Rjaibi, “Extending Relational Database Systems to Automatically Enforce Privacy Poliies,” Proc. 21st Int’l Conf. Data Eng., pp. 1013-1022, 2005.
[8] C. Dwork, “Differential Privacy,” Proc. 33rd Int’l Colloquium Automata, Languages and Programming, pp. 1-12, 2006.
Downloads
Published
Issue
Section
License

This work is licensed under a Creative Commons Attribution 4.0 International License.
This work is licensed under a Creative Commons Attribution 4.0 International License.
Under this license, authors retain ownership of the copyright for their articles. By submitting to the International Journal of Advanced Research in Science, Management, and Technology (IJARSMT), authors grant the journal the right of first publication. Users are free to share, copy, and redistribute the material in any medium or format, and to adapt, remix, transform, and build upon the material for any purpose, including commercially, provided that appropriate credit is given to the original author(s) and the journal, a link to the license is provided, and any changes made are indicated.
