{"title":"Defining and Implementing Connection Anonymity for SaaS Web Services","authors":"Vinícius M. Pacheco, R. Puttini","doi":"10.1109/CLOUD.2012.88","DOIUrl":null,"url":null,"abstract":"In this paper, we define practical schemes to protect the cloud consumer's identity (ID) during message exchanges (connection anonymity) in SaaS. We describe the typical/target scenario for service consumption and provide a detailed privacy assessment. This is used to identify different levels of interactions between consumers and providers, as well as to evaluate how privacy is affected. We propose a multi-layered anonymity framework, where different anonymity techniques are employed together to protect ID, location, behavior and data privacy, during each level of consumer-provider interaction. We also define two schemes for generating and managing anonymous credentials, which are used to implement the proposed framework. These schemes provide two options of connection anonymity: traceable (anonymity can be disclosed, if required) and untraceable (anonymity cannot be disclosed). The consumer and provider will be able to choose which is more suitable to their needs and regulatory environments.","PeriodicalId":214084,"journal":{"name":"2012 IEEE Fifth International Conference on Cloud Computing","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-06-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 IEEE Fifth International Conference on Cloud Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CLOUD.2012.88","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
Abstract
In this paper, we define practical schemes to protect the cloud consumer's identity (ID) during message exchanges (connection anonymity) in SaaS. We describe the typical/target scenario for service consumption and provide a detailed privacy assessment. This is used to identify different levels of interactions between consumers and providers, as well as to evaluate how privacy is affected. We propose a multi-layered anonymity framework, where different anonymity techniques are employed together to protect ID, location, behavior and data privacy, during each level of consumer-provider interaction. We also define two schemes for generating and managing anonymous credentials, which are used to implement the proposed framework. These schemes provide two options of connection anonymity: traceable (anonymity can be disclosed, if required) and untraceable (anonymity cannot be disclosed). The consumer and provider will be able to choose which is more suitable to their needs and regulatory environments.