Data Mediation with Enterprise Level Security
Enterprise Level Security (ELS) is an architecture for enabling information sharing with strong security guarantees. It is built upon basic tenets and concepts that shape its component technologies and implementation. One challenge in sharing information is that the source and recipient of the infor...
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
International Institute of Informatics and Cybernetics
2017-10-01
|
Series: | Journal of Systemics, Cybernetics and Informatics |
Subjects: | |
Online Access: | http://www.iiisci.org/Journal/CV$/sci/pdfs/SA950FX17.pdf
|
_version_ | 1819149668084350976 |
---|---|
author | Kevin E. Foltz William R. Simpson |
author_facet | Kevin E. Foltz William R. Simpson |
author_sort | Kevin E. Foltz |
collection | DOAJ |
description | Enterprise Level Security (ELS) is an architecture for enabling information sharing with strong security guarantees. It is built upon basic tenets and concepts that shape its component technologies and implementation. One challenge in sharing information is that the source and recipient of the information may use different units, protocols, data formats, or tools to process information. As a result, a transformation of the data is needed before the recipient can use the information. These conversions introduce potential security weaknesses into an ELS system, so an approach for enterprise-wide mediation is required. Methods in common use today, such as a man-in-the-middle (MITM) translation and an online mediation service, do not preserve the basic ELS tenets and concepts. This paper examines these existing approaches and compares them with two new approaches designed to preserve ELS security. It looks at the complete picture of security, performance, and ease of implementation, offering a framework for choosing the best mediation approach based on the data sharing context. |
first_indexed | 2024-12-22T14:05:16Z |
format | Article |
id | doaj.art-546137d2274f4b75b13ab69beb574a90 |
institution | Directory Open Access Journal |
issn | 1690-4524 |
language | English |
last_indexed | 2024-12-22T14:05:16Z |
publishDate | 2017-10-01 |
publisher | International Institute of Informatics and Cybernetics |
record_format | Article |
series | Journal of Systemics, Cybernetics and Informatics |
spelling | doaj.art-546137d2274f4b75b13ab69beb574a902022-12-21T18:23:19ZengInternational Institute of Informatics and CyberneticsJournal of Systemics, Cybernetics and Informatics1690-45242017-10-011558893Data Mediation with Enterprise Level SecurityKevin E. FoltzWilliam R. SimpsonEnterprise Level Security (ELS) is an architecture for enabling information sharing with strong security guarantees. It is built upon basic tenets and concepts that shape its component technologies and implementation. One challenge in sharing information is that the source and recipient of the information may use different units, protocols, data formats, or tools to process information. As a result, a transformation of the data is needed before the recipient can use the information. These conversions introduce potential security weaknesses into an ELS system, so an approach for enterprise-wide mediation is required. Methods in common use today, such as a man-in-the-middle (MITM) translation and an online mediation service, do not preserve the basic ELS tenets and concepts. This paper examines these existing approaches and compares them with two new approaches designed to preserve ELS security. It looks at the complete picture of security, performance, and ease of implementation, offering a framework for choosing the best mediation approach based on the data sharing context.http://www.iiisci.org/Journal/CV$/sci/pdfs/SA950FX17.pdf ConfidentialityIntegrityEnterpriseSystem DesignSecurityMediationIT Security |
spellingShingle | Kevin E. Foltz William R. Simpson Data Mediation with Enterprise Level Security Journal of Systemics, Cybernetics and Informatics Confidentiality Integrity Enterprise System Design Security Mediation IT Security |
title | Data Mediation with Enterprise Level Security |
title_full | Data Mediation with Enterprise Level Security |
title_fullStr | Data Mediation with Enterprise Level Security |
title_full_unstemmed | Data Mediation with Enterprise Level Security |
title_short | Data Mediation with Enterprise Level Security |
title_sort | data mediation with enterprise level security |
topic | Confidentiality Integrity Enterprise System Design Security Mediation IT Security |
url | http://www.iiisci.org/Journal/CV$/sci/pdfs/SA950FX17.pdf
|
work_keys_str_mv | AT kevinefoltz datamediationwithenterpriselevelsecurity AT williamrsimpson datamediationwithenterpriselevelsecurity |