首页> 外文会议>Computer Security Applications Conference >Java Security Extensions for a Java Server in a Hostile Environment
【24h】

Java Security Extensions for a Java Server in a Hostile Environment

机译:在恶意环境中的Java服务器的Java安全扩展

获取原文

摘要

The Java (TM) Virtual Machine is being used more frequently as the basic engine behind dynamic web services. With the proliferation of network attacks on these network resources, much work has been done to provide security for the network environment. Continuing work on firewalls, intrusion detection, and even access control have provided numerous insights and capabilities for protecting web resources. Java itself has received much attention in the security arena, and the Java 2(TM) Architecture has provided considerable in-roads to providing security services. However, this research has operated under the assumption that attacks only occur through the network, and not with direct access to the web server through a valid login. Little effort has been placed on securing a Java web server where the attacker has a valid login to the host machine. This paper describes specific security extensions developed for a Java Virtual Machine that provide assurance of correct system operation and integrity even in the presence of successful attacks on the underlying operating system.
机译:Java(TM)虚拟机更频繁地使用动态Web服务后面的基本引擎。随着网络攻击对这些网络资源的扩散,已经完成了很多工作来为网络环境提供安全性。继续处理防火墙,入侵检测,甚至访问控制,为保护网络资源提供了许多见解和功能。 Java本身在安全竞技场中受到了很多关注,Java 2(TM)架构为提供了安全服务提供了相当大的途径。但是,这项研究在假设攻击通过网络中仅发生攻击时运行,而不是通过有效登录直接访问Web服务器。确保攻击者与主机有效登录的Java Web服务器进行了很少的努力。本文介绍了为Java虚拟机开发的特定安全扩展,即使在存在对底层操作系统的成功攻击的情况下,也能提供正确的系统操作和完整性的保证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号