节点文献

基于P3P协议的电子商务系统隐私保护研究

Reseach on the Privacy Protection of E-Commerce System Basing on the P3P Protocol

【作者】 吴婷婷

【导师】 刘洪伟;

【作者基本信息】 广东工业大学 , 管理科学与工程, 2011, 硕士

【摘要】 电子商务作为一种崭新的商务模式,在为人们提供便利的同时,也使得原有作为隐私权屏障的时间和空间因素失去了作用。个人在线隐私安全成为了电子商务面临的最大挑战之一。P3P(Platform for Privacy Preference)协议是由W3C(World Wide Web Consortium)组织建立的目前最为业界所接受的个人在线隐私保护策略,但其目前主要针对一般网站来构建隐私策略,在电子商务网站中的研究尚嫌不足。电子商务网站不同于一般的网站,有它自身的特殊性,包含了其所特有的一些数据元素,本文对基于P3P协议的电子商务系统做了进一步的研究,使用了P3P协议来构建隐私策略,并结合电子商务的自身特点,更加合理地对P3P协议相关隐私因素方面进行了定义和构建,以更好的保护在线用户的个人隐私,为电子商务的发展创造有利条件。主要研究内容如下:1.P3P策略是使用标准P3P隐私词汇表的Web站点隐私策略的可机读的表示法。分析了如何选择P3P策略及描述策略语法,并针对电子商务网站创建了P3P策略。2.分析了在电子商务网站中用户特有的一些隐私因素,使得在用P3P协议创建隐私策略时可以对这些数据元素进行具体的定义,从而更好的保护在线用户的隐私。3.论述了P3P协议的基础数据模式和数据集,详细分析了13种基础信息的结构,对数据集中的每项元素进行了细致的阐述,并结合现有电子商务网站卓越亚马逊的隐私声明,创建了P3P策略文件和隐私数据结构。运用P3P协议把隐私声明转化为可人读的隐私策略,使得用户可以自己定义个人隐私偏好,从而网站可以提供更加符合用户习惯的个性化服务,用户的隐私信息也可以得到一定的保护。本文针对电子商务的特点,构建了数据、策略、策略文件以及数据结构,并针对电子商务环境下的隐私问题研究了其P3P协议体系。最后结合电子商务网站卓越亚马逊的隐私声明,实现了基于P3P协议的电子商务系统中策略及其数据模式的构建。

【Abstract】 As a completely new commerce mode, electronic commerce (e-commerce) not only has provided great convenience for people, but has also broken the bounds of time and space, which would lose its natural function as the shield of privacy.The P3P protocol which established by W3C is now the most widely accepted personal online privacy protection strategy. However its main focus is ordinary website, little research has been done for its application in e-commerce websites. E-commerce websites differentiate themselves from those common ones in having some specialties and characteristic data units. The main work of this thesis is to make a fundamentally and detailed study of how the P3P tech can be used in e-commerce. And the P3P protocol is adopted to establish the privacy strategy. Combined with the characteristics of e-commerce websites, some privacy factors of the P3P protocl are redefined and re-established more reasonably to privide greater privacy protection for on-line users. The main contents are listed as below:1. P3P is a machine readable representation of the web site privacy strategy using the standard P3P privacy vocabulary. The issue of how to choose P3P strategy and how to describe strategy gramma is analyzed. And the P3P strategy is established for the e-commerce website.2. By analyzing the characteristic privacy elements at e-commerce websites and providing accesses to the concrete definitions of these data units for the users, the established privacy strategy can provide more protection for the on-line user’s privacy.3. The base data schema and data set of P3P protocol is presented. Detailed analysis and representation have been taken for the structure of the base information and the every element of the data set. Combined with the privacy announcement of the joyo amazon web, the P3P strategy files and privacy data structure are established. The P3P protocol is used to convert the privacy announcement into man readable privacy strategies to provide access for the users to define their privacy likes. As a result, the website can provide more personal services to cater to user’s likes, and privacy information of the user can be protected to some extent.Referring to the characteristics of e-commerce, the data, strategy, strategy files and data structure are established. And the P3P proctol system is analyzed for the privacy problems under the e-commerce environment. At the end, combined with the privacy statement of the the joyo amazon web, the establishment of strategy and the corresponding data schema of the e-commerce system basing on the P3P protocol is achieved.

节点文献中: 

本文链接的文献网络图示:

本文的引文网络