Accuracy-Constrained Privacy-Preserving Access Control Mechanism for Relational Data

Authors

  • Amol Phoke Author
  • Avinash Mahamune Author
  • Sunil Ambhore Author

Keywords:

Access Control, K-annonymity, L-diversity, Query Imprecision, privacy, Data Confidentiality.

Abstract

Access control mechanisms protect sensitive information from unauthorized users. However, when sensitive information is shared and a Privacy Protection Mechanism (PPM) is not in place, an authorized user can still compromise the privacy of a person leading to identity disclosure. The technique of k-anonymization has been proposed in the literature as an alternative way to release public information, while ensuring both data privacy and data integrity. We prove that two general versions of optimal k-anonymization of relations are NP-hard, including the suppression version which amounts to choosing a minimum number of entries to delete from the relation. The techniques for workload-aware anonymization for selection predicates have been discussed in the literature. we propose heuristics for anonymization algorithms and show empirically that the proposed approach satisfies imprecision bounds for more permissions and has lower total imprecision than the current state of the art.

References

[1] R. Anderson, ªA Security Policy Model for Clinical Information Systems,º Proc. IEEE Symp. Security and Privacy, pp. 30-43, May 1996.

[2] B.A. Davey and H.A. Priestley, Introduction to Lattices and Order. Cambridge Univ. Press, 1990.

[3] L. Sweeney, ªGuaranteeing Anonymity when Sharing Medical Data, the Datafly System,º Proc. J. Am. Medical Informatics Assoc., Washington, DC.: Hanley & Belfus, Inc., 1997.

[4] B. Woodward, ªThe Computer-Based Patient Record Confidentiality, The New England J. Medicine, vol. 333, no. 21, pp. 1419-1422, 1995.

[5] J. Buehler, A. Sonricker, M. Paladini, P. Soper, and F. Mostashari, “Syndromic Surveillance Practice in the United States: Findings from a Survey of State, Territorial, and Selected Local Health Departments,” Advances in Disease Surveillance, vol. 6, no. 3, pp. 1- 20, 2008.

[6] R. Sandhu and Q. Munawer, “The Arbac99 Model for Administration of Roles,” Proc. 15th Ann. Computer Security Applications Conf., pp. 229-238, 1999.

[7] R. Agrawal, P. Bird, T. Grandison, J. Kiernan, S. Logan, and W. Rjaibi, “Extending Relational Database Systems to Automatically Enforce Privacy Poliies,” Proc. 21st Int’l Conf. Data Eng., pp. 1013-1022, 2005.

[8] C. Dwork, “Differential Privacy,” Proc. 33rd Int’l Colloquium Automata, Languages and Programming, pp. 1-12, 2006.

Downloads

Published

2017-12-30

How to Cite

Accuracy-Constrained Privacy-Preserving Access Control Mechanism for Relational Data. (2017). International Journal of Advanced Research in Science, Management and Technology, 3(6), 1-7. https://ijarsmt.in/ijarsmt/article/view/58

Similar Articles

31-40 of 62

You may also start an advanced similarity search for this article.