A user data location control model for cloud services

  • Kaniz Fatema
  • , Philip D. Healy
  • , Vincent C. Emeakaroha
  • , John P. Morrison
  • , Theo Lynn

Research output: Chapter in Book/Report/Conference proceedingsConference proceedingpeer-review

Abstract

A data location control model for Cloud services is presented that uses an authorization system as its core control element. The model is intended for use by enterprises that collect personal data from end users that can potentially be stored and processed at multiple geographic locations. By adhering to the model's authorization decisions, the enterprise can address end users' concerns about the location of their data by incorporating their preferences about the location of their personal data into an authorization policy. The model also ensures that the end users have visibility into the location of their data and are informed when the location of their data changes. A prototype of the model has been implemented that provides the data owner with an interface that allows their location preferences to be expressed. These preferences are stored internally as XACML policy documents. Thereafter, movements or remote duplications of the data must be authorized by submitting requests to an ISO/IEC 10181-3:1996 compliant policy enforcement point. End users can, at any time, view up-to-date information on the locations where their data is stored via a web interface. Furthermore, XACML obligations are used to ensure that end users are informed whenever the location of their data changes.

Original languageEnglish
Title of host publicationCLOSER 2014 - Proceedings of the 4th International Conference on Cloud Computing and Services Science
PublisherSciTePress
Pages476-488
Number of pages13
ISBN (Print)9789897580192
DOIs
Publication statusPublished - 2014
Event4th International Conference on Cloud Computing and Services Science, CLOSER 2014 - Barcelona, Spain
Duration: 3 Apr 20145 Apr 2014

Publication series

NameCLOSER 2014 - Proceedings of the 4th International Conference on Cloud Computing and Services Science

Conference

Conference4th International Conference on Cloud Computing and Services Science, CLOSER 2014
Country/TerritorySpain
CityBarcelona
Period3/04/145/04/14

Keywords

  • Access control
  • Authorization system
  • Cloud computing
  • Data location
  • XACML

Fingerprint

Dive into the research topics of 'A user data location control model for cloud services'. Together they form a unique fingerprint.

Cite this