Position paper: Towards end-to-end privacy for publish/subscribe architectures in the internet of things

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The Internet of Things paradigm lacks end-to-end privacy solutions to consider its full adoption in real life scenarios in the near future. The recent enactment of the EU General Data Protection Regulation (GDPR) indeed emphasises the need for stronger security and privacy measures for personal data processing and free movement, including consent management and accountability by the data controller and processor. In this paper, we suggest an architecture to enforce end-to-end data usage control in Distributed Event-Based Systems (DEBS), from data producers to consumer services, taking into account some of the GDPR requirements concerning consent management and data processing transparency. Our architecture proposal is based on UCON ABC usage control models, which we overlap with a distributed hash table overlay for scalability and fault-tolerance concerns, and across and within systems data usage control. Our proposal highlights the benefits of combining both DEBS and end-user usage control architectures. To complete our approach, we quickly survey existing encryption models that ensure data confidentiality in topic-based Publish/Subscribe systems and highlight the remaining obstacles to transpose them to content-based DEBS with an overlay of brokers.

Original languageEnglish
Title of host publicationM4IOT 2018 - Proceedings of the 2018 Workshop on Middleware and Applications for the Internet of Things, Part of Middleware 2018 Conference
PublisherAssociation for Computing Machinery, Inc
Pages35-40
Number of pages6
ISBN (Electronic)9781450361187
DOIs
Publication statusPublished - 10 Dec 2018
Externally publishedYes
Event2018 Workshop on Middleware and Applications for the Internet of Things, M4IOT 2018, Part of Middleware 2018 Conference - Rennes, France
Duration: 10 Dec 201811 Dec 2018

Publication series

NameM4IOT 2018 - Proceedings of the 2018 Workshop on Middleware and Applications for the Internet of Things, Part of Middleware 2018 Conference

Conference

Conference2018 Workshop on Middleware and Applications for the Internet of Things, M4IOT 2018, Part of Middleware 2018 Conference
Country/TerritoryFrance
CityRennes
Period10/12/1811/12/18

Keywords

  • Content-based Distributed Event-Based Systems
  • IoT
  • Privacy
  • Usage Control

Fingerprint

Dive into the research topics of 'Position paper: Towards end-to-end privacy for publish/subscribe architectures in the internet of things'. Together they form a unique fingerprint.

Cite this