Home // SECURWARE 2022, The Sixteenth International Conference on Emerging Security Information, Systems and Technologies // View article
Advanced Access Control Mechanism for Mobility as a Service Platform
Authors:
Anjali Rajith
Soki Sakurai
Keywords: MaaS; access control; trust score; privacy; XACML
Abstract:
Mobility as a Service (MaaS) is a digital platform that integrates multiple transport and third-party providers into a single channel that enables customers to easily book and pay for services. Data misuse, accidental data leakage, and malicious services are the key threats to confidential customer and service provider data. To eliminate these threats, an advanced access control system is proposed for MaaS that utilizes a context based, customer-centric, hybrid fine-grained and quantitative trust computing approach. The eXtensible Access Control Language architecture is extended by adding a trust score computation module and policy update function. When a data request arrives, the data access context is determined, and the trust score of the data requester is computed based on selected trust parameters. Access to confidential information is subjected to trust score condition and fine-grained policy rules. Real-time policy updating and data masking are performed when personal data-sharing preferences are changed. Our model ensures a safe, reliable data flow and mitigates the security and privacy issues.
Pages: 15 to 21
Copyright: Copyright (c) IARIA, 2022
Publication date: October 16, 2022
Published in: conference
ISSN: 2162-2116
ISBN: 978-1-68558-007-0
Location: Lisbon, Portugal
Dates: from October 16, 2022 to October 20, 2022