Abstract
Online social networks (OSNs) are increasingly turning mobile and further calling for decentralized social data management. This trend is only going to increase in the near future, based on the increased activity, both by established players like Facebook and new players in the domain such as Google, Instagram, and Pinterest. The increasing adoption of social networks in the workplace has further led to the development of corporate social networks such as those provided by Yammer, which was recently acquired by Microsoft. As individuals from different companies will need to interact as part of joint teams in these federated social networks, questions of privacy and access control arise. This chapter identifies the challenges concerning the above aspects, surveys the state of the art, and identifies directions of future research.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
European Commission: Commission proposes a comprehensive reform of the data protection rules, http://ec.europa.eu/justice/newsroom/data-protection/news/120125_en.htm (accessed January 2014)
Microsoft: Microsoft to Acquire Yammer, http://www.microsoft.com/en-us/news/press/2012/jun12/06-25msyammerpr.aspx (accessed January 2014)
Ho, R.: Google+ is now available for Google Apps, http://googleenterprise.blogspot.it/2011/10/google-is-now-available-with-google.html (accessed January 2014)
Hinchcliffe, D.: Today’s Collaboration Platforms for Large Enterprises, http://www.zdnet.com/the-major-enterprise-collaboration-platforms-and-their-mobile-clients-7000018519/ (accessed January 2014)
Narayanan, A., Toubiana, V., Barocas, S., Nissenbaum, H., Boneh, D.: A critical look at decentralized personal data architectures. CoRR abs/1202.4503 (2012)
Esguerra, R.: An introduction to the federated social network, https://www.eff.org/deeplinks/2011/03/introduction-distributed-social-network (accessed January 2014)
Facebook: Online Social Networking Platform, https://www.facebook.com/ (accessed January 2014)
OAuth: Secure authorization open protocol, http://oauth.net/ (accessed January 2014)
Twitter: Online Social Networking and Microblogging Service, https://twitter.com/ (accessed January 2014)
Redis: Open source advanced key-value store, http://redis.io/ (accessed January 2014)
Tuan Anh, D.T., Ganjoo, M., Braghin, S., Datta, A.: Mosco: A privacy-aware middleware for mobile social computing. Journal of Systems and Software (2013)
XACML: eXtensible Access Control Markup Language (XACML) Version 3.0, http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.html (accessed January 2014)
Ning: Build and cultivate your own community, http://www.ning.com/ (accessed January 2014)
Foundation, O.: OpenSocial protocol, http://opensocial.org/ (accessed January 2014)
Yammer: Enterprise Social Network, https://www.yammer.com/ (accessed January 2014)
SAML: Security Assertion Markup Language (SAML) v2.0, https://www.oasis-open.org/standards#samlv2.0 (accessed January 2014)
Status.net: Free and open source social software, http://status.net/ (accessed January 2014)
Identi.ca: Open source social networking service, https://identi.ca/ (accessed January 2014)
pump.io: Open source social stream server, http://pump.io/ (accessed January 2014)
WebFinger: Personal web discovery protocol, https://code.google.com/p/webfinger/wiki/WebFingerProtocol (accessed January 2014)
Appcelerator: Portable software development platform, http://www.appcelerator.com/ (accessed January 2014)
OpenID Foundation: The Internet Identity Layer, http://openid.net/ (accessed January 2014)
Macgirvin, M.: DFRN - The Distributed Friends and Relations Network, https://macgirvin.com/spec/dfrn2.pdf (accessed January 2014)
Zot: Secure decentralised communications framework, https://github.com/friendica/red/wiki/zot (accessed January 2014)
Wahl, M., Howes, T., Kille, S.: Lightweight Directory Access Protocol, https://www.ietf.org/rfc/rfc2251.txt
Friendica: Red design documentation, https://github.com/friendica/red/wiki/red (accessed January 2014)
Diaspora: The Community-run, Distributed Social Network, http://www.joindiaspora.com/ (accessed January 2014)
Salmon: Real-time Commenting Protocol, http://www.salmon-protocol.org/ (accessed January 2014)
OneSocialWeb: Creating a free, open, and decentralized social networking platform, http://onesocialweb.org/ (accessed January 2014)
buddycloud: Federated social network, http://buddycloud.com/ (accessed January 2014)
XMPP: XMPP standards foundation, http://xmpp.org/about-xmpp/xsf/ (accessed January 2014)
XMPP: XMPP extension protocols, http://xmpp.org/extensions/xep-0001.html (accessed January 2014)
Elgg: Open Source Social Networking Engine, http://elgg.org/ (accessed January 2014)
Dodson, B., Vo, I., Purtell, T., Cannon, A., Lam, M.: Musubi: Disintermediated interactive social feeds for mobile devices. In: Proceedings of the 21st International Conference on World Wide Web, pp. 211–220. ACM (2012)
Toninelli, A., Pathak, A., Issarny, V.: Yarta: A Middleware for Managing Mobile Social Ecosystems. In: Riekki, J., Ylianttila, M., Guo, M. (eds.) GPC 2011. LNCS, vol. 6646, pp. 209–220. Springer, Heidelberg (2011)
Hachem, S., Toninelli, A., Pathak, A., Issarny, V.: Policy-based Access Control in Mobile Social Ecosystems. In: Proceedings of the IEEE International Symposium on Policies for Distributed Systems and Networks, Pisa, Italy. IEEE computer society (June 2011)
W3C: Federated social web community group, http://www.w3.org/2005/Incubator/federatedsocialweb/wiki/Main_Page (accessed January 2014)
Parliament: High-performance triple store, http://parliament.semwebcentral.org/ (accessed January 2014)
AllegroGraph: RDFStore Web 3.0’s Database, http://franz.com/agraph/allegrograph/ (accessed January 2014)
Mulgara: Open source scalable rdf database, http://www.mulgara.org/ (accessed January 2014)
Tummarello, G., Morbidoni, C., Bachmann-Gmür, R., Erling, O.: RDFSync: Efficient remote synchronization of rdf models. In: Aberer, K., et al. (eds.) ASWC 2007 and ISWC 2007. LNCS, vol. 4825, pp. 537–551. Springer, Heidelberg (2007)
eXo: Open Source Enterprise Social Network, http://www.exoplatform.com/ (accessed January 2014)
Shibboleth: Federated identity solutions, http://shibboleth.net/ (accessed January 2014)
Gluu: Open source access management, http://www.gluu.org/ (accessed January 2014)
Decat, M., Lagaisse, B., Van Landuyt, D., Crispo, B., Joosen, W.: Federated authorization for software-as-a-service applications. In: Meersman, R., Panetto, H., Dillon, T., Eder, J., Bellahsene, Z., Ritter, N., De Leenheer, P., Dou, D. (eds.) ODBASE 2013. LNCS, vol. 8185, pp. 342–359. Springer, Heidelberg (2013)
Mont, M.C., Pearson, S., Bramhall, P.: Towards accountable management of identity and privacy: Sticky policies and enforceable tracing services. In: IEEE Proceedings of the 14th International Workshop on Database and Expert Systems Applications, pp. 377–382 (2003)
Fatema, K., Chadwick, D.W., Lievens, S.: A multi-privacy policy enforcement system. In: Fischer-Hübner, S., Duquenoy, P., Hansen, M., Leenes, R., Zhang, G. (eds.) Privacy and Identity 2010. IFIP AICT, vol. 352, pp. 297–310. Springer, Heidelberg (2011)
MQTT: Machine to machine connectivity protocol, http://mqtt.org/ (accessed January 2014)
Bennaceur, A., Singh, P., Raverdy, P.G., Issarny, V.: The iBICOOP middleware: Enablers and services for emerging pervasive computing environments. In: IEEE International Conference on Pervasive Computing and Communications, PerCom 2009, pp. 1–6. IEEE (2009)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2014 Springer International Publishing Switzerland
About this chapter
Cite this chapter
Pathak, A., Rosca, G., Issarny, V., Decat, M., Lagaisse, B. (2014). Privacy and Access Control in Federated Social Networks. In: Heisel, M., Joosen, W., Lopez, J., Martinelli, F. (eds) Engineering Secure Future Internet Services and Systems. Lecture Notes in Computer Science, vol 8431. Springer, Cham. https://doi.org/10.1007/978-3-319-07452-8_7
Download citation
DOI: https://doi.org/10.1007/978-3-319-07452-8_7
Publisher Name: Springer, Cham
Print ISBN: 978-3-319-07451-1
Online ISBN: 978-3-319-07452-8
eBook Packages: Computer ScienceComputer Science (R0)