Central Audit Logging Mechanism in Personal Data Web Services
Title | Central Audit Logging Mechanism in Personal Data Web Services |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Ha\c silo\u glu, A., Bali, A. |
Conference Name | 2018 6th International Symposium on Digital Forensic and Security (ISDFS) |
ISBN Number | 978-1-5386-3449-3 |
Keywords | access logs, API, API Policy, application program interfaces, Audit Logging, auditing, central audit logging mechanism, data source, Databases, Human Behavior, human factors, Internet, Law, personal data, personal data Web services, personal information, pubcrawl, resilience, Resiliency, Routing, Scalability, Security Audits, security of data, Servers, Simple object access protocol, Web Service, Web service platform, web services |
Abstract | Personal data have been compiled and harnessed by a great number of establishments to execute their legal activities. Establishments are legally bound to maintain the confidentiality and security of personal data. Hence it is a requirement to provide access logs for the personal information. Depending on the needs and capacity, personal data can be opened to the users via platforms such as file system, database and web service. Web service platform is a popular alternative since it is autonomous and can isolate the data source from the user. In this paper, the way to log personal data accessed via web service method has been discussed. As an alternative to classical method in which logs were recorded and saved by client applications, a different mechanism of forming a central audit log with API manager has been investigated. By forging a model policy to exemplify central logging method, its advantages and disadvantages have been explored. It has been concluded in the end that this model could be employed in centrally recording audit logs. |
URL | https://ieeexplore.ieee.org/document/8355333 |
DOI | 10.1109/ISDFS.2018.8355333 |
Citation Key | hasiloglu_central_2018 |
- personal data Web services
- web services
- Web service platform
- Web Service
- Simple object access protocol
- Servers
- security of data
- Security Audits
- Scalability
- Routing
- Resiliency
- resilience
- pubcrawl
- personal information
- access logs
- personal data
- Law
- internet
- Human Factors
- Human behavior
- Databases
- data source
- central audit logging mechanism
- auditing
- Audit Logging
- application program interfaces
- API Policy
- API