loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
16th Annual Computer Security Applications Conference (ACSAC'00)
Protection profiles for remailer mixes - Do the new evaluation criteria help?
New Orleans, Louisiana
December 11-December 15
ISBN: 0-7695-0859-6
K. Rannenberg, Microsoft Res., Cambridge, UK
G. Iachello, Microsoft Res., Cambridge, UK
Early IT security evaluation criteria such as the TCSEC and the ITSEC suffered much criticism for their lack of coverage of privacy-related requirements. Recent evaluation criteria, such as the CC and the ISO-ECITS now contain components assigned to privacy. This is a step towards enhanced privacy protection, especially for non-experts. We examined the suitability and use of these components and the criteria as a whole by specifying a number of protection profiles (PPs) for remailer mix networks, as mix networks aim at user anonymity and unobservable message transfer. This contribution reports on the PPs and the experiences gained. It also introduces proposals for improving the criteria that were derived from this work.
Index Terms:
data privacy; electronic mail; information technology; certification; protection profiles; remailer mixes; evaluation criteria; IT security evaluation criteria; privacy-related requirements; privacy protection; remailer mix networks; user anonymity; unobservable message transfer; information technology; CC; ISO-ECITS; TCSEC; ITSEC
Citation:
K. Rannenberg, G. Iachello, "Protection profiles for remailer mixes - Do the new evaluation criteria help?," acsac, pp.107, 16th Annual Computer Security Applications Conference (ACSAC'00), 2000
Usage of this product signifies your acceptance of the Terms of Use.