Skip to main content
Article
Extending XACML to Express and Enforce Laws and Regulations Privacy Policies
Systems, Applications and Technology Conference (LISAT)
  • Tariq Alshugran
  • Julius Dichter
  • Amalia Rusu, Fairfield University
Document Type
Conference Proceeding
Publication Date
5-1-2015
Disciplines
Abstract

Some software applications are developed to collect, store, and manage users' personal, medical, or financial information. In the United States, such applications are required to preserve users' privacy and to be compliant with the federal privacy laws and regulations. To formally guarantee compliance with federal regulations, it is necessary to express the privacy rules enforced by those regulations in a standard policy specification language. In this work we evaluate the eXtensible Access Control Model Language (XACML) as a formal specification language for privacy laws and regulations. Furthermore, we evaluate XACML features and attributes to extend it in order to enforce those privacy rules.

Comments

Copyright 2015 IEEE

A link to full text has been provided for authorized subscribers.

Published Citation
Alshugran, Tariq, Julius Dichter, and Amalia Rusu. "Extending XACML to express and enforce laws and regulations privacy policies." In Systems, Applications and Technology Conference (LISAT), 2015 IEEE Long Island, pp. 1-5. IEEE, 2015. DOI: 10.1109/LISAT.2015.7160190
DOI
10.1109/LISAT.2015.7160190
None
Peer Reviewed
Citation Information
Tariq Alshugran, Julius Dichter and Amalia Rusu. "Extending XACML to Express and Enforce Laws and Regulations Privacy Policies" Systems, Applications and Technology Conference (LISAT) (2015)
Available at: http://works.bepress.com/amalia-rusu/7/