Skip to main content
Journal cover image

ImPACT: A networked service architecture for safe sharing of restricted data

Publication ,  Journal Article
Baldin, I; Chase, J; Crabtree, J; Nechyba, T; Christopherson, L; Stealey, M; Kneifel, C; Orlikowski, V; Carter, R; Scott, E; Sone, A; Sizemore, D
Published in: Future Generation Computer Systems
April 1, 2022

In this paper we describe an architecture developed and prototyped in the course of the NSF-funded project called ImPACT—Infrastructure for Privacy-Assured CompuTations. This architecture addresses the common problems that arise from the need to securely store, control access to and process privacy-restricted data in a multi-institutional, multi-stakeholder setting. Specifically the architecture includes several components—a way to publicly advertise a limited set of data attributes without exposing the sensitive data itself; a set of mechanisms for a data owner to specify and automatically enforce complex data-access policies commonly expressed today as Data Use Agreements (DUAs); a way to securely collect digital attestations from multiple stakeholders to satisfy those policies; and a reproducible template to deploy secure processing enclaves in which groups of researchers can analyze the data in a way that complies with data owner policies using the tools of their choice. The paper describes the architecture and its instantiation in a prototype, providing a performance evaluation of several components.

Duke Scholars

Altmetric Attention Stats
Dimensions Citation Stats

Published In

Future Generation Computer Systems

DOI

ISSN

0167-739X

Publication Date

April 1, 2022

Volume

129

Start / End Page

269 / 285

Related Subject Headings

  • Distributed Computing
  • 4609 Information systems
  • 4606 Distributed computing and systems software
  • 4605 Data management and data science
  • 0806 Information Systems
  • 0805 Distributed Computing
  • 0803 Computer Software
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Baldin, I., Chase, J., Crabtree, J., Nechyba, T., Christopherson, L., Stealey, M., … Sizemore, D. (2022). ImPACT: A networked service architecture for safe sharing of restricted data. Future Generation Computer Systems, 129, 269–285. https://doi.org/10.1016/j.future.2021.11.026
Baldin, I., J. Chase, J. Crabtree, T. Nechyba, L. Christopherson, M. Stealey, C. Kneifel, et al. “ImPACT: A networked service architecture for safe sharing of restricted data.” Future Generation Computer Systems 129 (April 1, 2022): 269–85. https://doi.org/10.1016/j.future.2021.11.026.
Baldin I, Chase J, Crabtree J, Nechyba T, Christopherson L, Stealey M, et al. ImPACT: A networked service architecture for safe sharing of restricted data. Future Generation Computer Systems. 2022 Apr 1;129:269–85.
Baldin, I., et al. “ImPACT: A networked service architecture for safe sharing of restricted data.” Future Generation Computer Systems, vol. 129, Apr. 2022, pp. 269–85. Scopus, doi:10.1016/j.future.2021.11.026.
Baldin I, Chase J, Crabtree J, Nechyba T, Christopherson L, Stealey M, Kneifel C, Orlikowski V, Carter R, Scott E, Sone A, Sizemore D. ImPACT: A networked service architecture for safe sharing of restricted data. Future Generation Computer Systems. 2022 Apr 1;129:269–285.
Journal cover image

Published In

Future Generation Computer Systems

DOI

ISSN

0167-739X

Publication Date

April 1, 2022

Volume

129

Start / End Page

269 / 285

Related Subject Headings

  • Distributed Computing
  • 4609 Information systems
  • 4606 Distributed computing and systems software
  • 4605 Data management and data science
  • 0806 Information Systems
  • 0805 Distributed Computing
  • 0803 Computer Software