Extending XACML to Express and Enforce Laws and Regulations Privacy Policies
Document Type
Conference Proceeding
Publication Date
Some software applications are developed to collect, store, and manage users' personal, medical, or financial information. In the United States, such applications are required to preserve users' privacy and to be compliant with the federal privacy laws and regulations. To formally guarantee compliance with federal regulations, it is necessary to express the privacy rules enforced by those regulations in a standard policy specification language. In this work we evaluate the eXtensible Access Control Model Language (XACML) as a formal specification language for privacy laws and regulations. Furthermore, we evaluate XACML features and attributes to extend it in order to enforce those privacy rules.
Publication Title
Systems, Applications and Technology Conference (LISAT)
Repository Citation
Alshugran, Tariq; Dichter, Julius; and Rusu, Amalia, "Extending XACML to Express and Enforce Laws and Regulations Privacy Policies" (2015). Engineering Faculty Publications. 221.
Published Citation
Alshugran, Tariq, Julius Dichter, and Amalia Rusu. "Extending XACML to express and enforce laws and regulations privacy policies." In Systems, Applications and Technology Conference (LISAT), 2015 IEEE Long Island, pp. 1-5. IEEE, 2015. DOI: 10.1109/LISAT.2015.7160190
Peer Reviewed
Copyright 2015 IEEE
A link to full text has been provided for authorized subscribers.