Copyright JNT Association 2009NorduNET, 18 th September Protecting Privacy in Global Networks Andrew Cormack Chief Regulatory Adviser, JANET(UK)
Copyright JNT Association 2009NorduNET, 18 th September Privacy or Secrecy “On the Internet no one knows you’re a dog” – Right? Secrecy = no use of information Privacy = person-controlled use of information But sometimes we want people to know stuff
Copyright JNT Association 2009NorduNET, 18 th September Controlled disclosure “Animal” “Dog” – so I get the right food in a bar – attribute “Same dog” – so I get into the apartment – recognition “Fido” – so I get fed at home – identification
Copyright JNT Association 2009NorduNET, 18 th September ? What is Privacy, anyway?
Copyright JNT Association 2009NorduNET, 18 th September ?
Copyright JNT Association 2009NorduNET, 18 th September Real-world privacy leaks! “Dog” + “Alsatian”
Copyright JNT Association 2009NorduNET, 18 th September Real-world privacy leaks! “Can pay” + Name + Affiliation
Copyright JNT Association 2009NorduNET, 18 th September Real-world privacy leaks! “Can drive” + Name + Date of Birth + Where born + Where living + Signature = Theft kit = Identity theft kit
Copyright JNT Association 2009NorduNET, 18 th September On-line: can do better Give me access Save stuff for my next visit Find me in other systems Bill me? Punish me? js56 cfa1 2e0b
Copyright JNT Association 2009NorduNET, 18 th September How to use privacy tools? Real world experience is a poor guide –Don’t import “leak and label” Law may say how to use technology –“how fast can I drive in Denmark?” –“which side of the road?”
Copyright JNT Association 2009NorduNET, 18 th September Lots of Privacy Law, but... Is amount of tax paid private data? YES!NO!
Copyright JNT Association 2009NorduNET, 18 th September YES!NO! Lots of Privacy Law, but... Is a web server log private data?
Copyright JNT Association 2009NorduNET, 18 th September Lots of Privacy Law, but... Who owns your private data? ME!YOU!
Copyright JNT Association 2009NorduNET, 18 th September Doing Privacy Right Privacy = “subject-controlled use” So, from that definition –Don’t cause of loss of control Either deliberately or accidentally Data/use minimisation => risk minimisation –Tell subject what you will do What uses they control and what they don’t –Build privacy into systems Identification as last (exceptional) resort
Copyright JNT Association 2009NorduNET, 18 th September Separation of Roles Separating identification is good Maybe separate credential issue too? –First get a (generic) on-line credential –Then use it to enrol with a particular service –As in PGP, sort of Result: SSO with better privacy –No “central database” of attributes or links –Services choose own enrolment standard Up to limit set by credential issue/use
Copyright JNT Association 2009NorduNET, 18 th September