Yves Deswarte, Privacy enhanced Internet (November 19, 2002)

Опубликовано: 13 Сентябрь 2026
на канале: securitylectures
146
3

From the CISR video library (http://www.cisr.us)

Yves Deswarte, CNRS, France
Privacy enhanced Internet
November 19, 2002

at the
Naval Postgraduate School
(http://www.nps.edu)

ABSTRACT
In Europe, many laws define how personal data should be collected, stored and processed by computing and communication systems in order to protect privacy of individuals and citizens. However, Europe's best lawmakers are discovering that these laws are all but unenforceable due to many reasons:
The Internet spans international borders without consideration for jurisdiction or legal constraints.
Most current Internet applications are based on the client-server model, which is inherently privacy intrusive.
Application of privacy laws relies on a voluntary effort, which is cost prohibitive while its financial returns are questionable.
The threat to personal privacy is compounded as security measures become more stringent.

The conclusion is clear, personal privacy will be protected only if new technologies are created to support this protection.

Privacy Enhancing Technologies (PETs) have been proposed to address some particular privacy needs, such as anonymous mail or anonymous access to public web servers. New PETs are needed to preserve privacy in authorization, in processing personal data within an enterprise, in sharing personal data between enterprises, and in emergent issues such as location services or ad-hoc networks. Of course, PETs will only be deployed if they do not impede law enforcement, so their design and operation must take into account the interests of law enforcement agencies, while preserving the citizens' rights.

About Mr. Yves Deswarte

Mr. Yves Deswarte is currently a "Director de Recherche" of CNRS, member of the "Dependable Computing and Fault Tolerance" research group at LAAS-CNRS in Toulouse, France.

From 1985 to 1998, he was the head of the SATURNE project, co-sponsored by INRIA and LAAS, intended to design and realize distributed systems able to tolerate both (accidental) faults and (malicious) intrusions in order to achieve a high reliability and a high security. This pioneering work on intrusion tolerance has been experimented on several prototypes integrating distributed file services, data processing services and security management services.

He is a member of the IEEE Computer Society's Technical Committee on Security and Privacy and is a member of the ACM. He has chaired the International Steering Committee of ESORICS (European Symposium on Research in Computer Security) since its creation in 1993 to 1998.

Mr. Deswarte is currently chairing the Dependable Computing Systems Technical Committee of the French Society SEE (Societe de l'Electricite, de l'Electronique, et des Technologies de l'Information et de la Communication). Since August 1999, he has been representing the IEEE Computer Society at IFIP TC-11 (Technical Committee on Security and Protection in Information Processing Systems).