首页> 外文会议>2nd international conference on security of information and networks 2009 >An architectural approach for assessing system trust based on security policy specifications and security mechanisms
【24h】

An architectural approach for assessing system trust based on security policy specifications and security mechanisms

机译:一种基于安全策略规范和安全机制评估系统信任的体系结构方法

获取原文

摘要

We investigate trust relationships between and within a security policy and a security mechanism to assess system trust of software application. It has been recognized that trust assessment of security systems in dynamic environments with multiple entities, each with its own changing needs from the security mechanisms, is a complex task. In this paper, we propose a novel architectural approach to assess system trust of service oriented environments. The primary goal of this architecture is to show a way for constructing an automated system for trust assessment of web services. Particularly, we consider beliefs of an entity about a specific security mechanism of a service and the behavior of the service. In addition, we present new trust metrics for assessing system trust of a web service. Furthermore, trust and trust related issues in literature are reviewed to make clear the pros of our approach for trust assessment.
机译:我们调查安全策略和安全机制之间以及内部的信任关系,以评估软件应用程序的系统信任。已经认识到,在具有多个实体的动态环境中对安全系统进行信任评估,这是一个复杂的任务,每个实体对安全机制的需求都有自己的变化。在本文中,我们提出了一种新颖的体系结构方法来评估面向服务环境的系统信任度。该体系结构的主要目标是显示一种构建用于对Web服务进行信任评估的自动化系统的方法。特别是,我们考虑实体对服务的特定安全机制和服务行为的信念。此外,我们提出了新的信任度指标,用于评估Web服务的系统信任度。此外,对文献中与信任和信任相关的问题进行了审查,以明确我们进行信任评估的方法的优点。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号