首页> 外文会议>IASTED International Conference on Internet and Multimedia Systems and Applications >AN AGENT BASED CERTIFICATE REVOCATION SCHEME FOR PUBLIC KEY MANAGEMENT IN MOBILE AND WIRELESS ADHOC NETWORKS
【24h】

AN AGENT BASED CERTIFICATE REVOCATION SCHEME FOR PUBLIC KEY MANAGEMENT IN MOBILE AND WIRELESS ADHOC NETWORKS

机译:用于移动和无线adhoc网络中的公钥管理的基于代理的证书吊销方案

获取原文

摘要

The absence of centralized servers in mobile ad hoc networks such as wireless Wi-Fi based and other sensor based networks makes it highly difficult to implement public key infrastructure based security systems. The core entity in a public key infrastructure is 'trust relationships'. Every client which need to authenticate a server (authentication means establishing the fact that the server that the client in communicating with is the actual server what it claims to be) ultimately has to rely a certain entity vouching for the server's authenticity. This entity is called the Certificate Authority. However establishing certificates in non-centralized networks such as wireless ad hoc networks could be highly cumbersome. Many distributed solutions have been proposed to address this problem. An important segment in the design of public key infrastructure is provisions for outdated and misused certificates to be revoked. We postulate that the amount of compromise that any node in an ad hoc network has undergone will be reflected most efficiently by nodes in its immediate neighborhood. Based on this, in this paper we present an agent based solution that gleans misuse information of a certain node to determine if a client can accept the node's certificate or not. Agent based architectures are very useful in establishing intelligence in distributed network. We explore the effect of agents on one of the critical aspects of the Internet (vis-a-vis: network security) which has not embraced agent based models at practical levels. With our experiments we provide a platform where agents can be modeled for security practices over the Internet and practical enterprise organizations.
机译:在诸如无线Wi-Fi基于和其他基于传感器的网络之类的移动临时网络中的缺失在移动ad hoc网络中的缺失使得实现基于公钥基础设施的安全系统非常困难。公钥基础架构中的核心实体是“信任关系”。需要验证服务器的每个客户端(身份验证意味着建立客户端与其通信的服务器是实际服务器所声称的事实)最终必须依赖于服务器的真实性的某些实体保证。此实体称为证书颁发机构。然而,在无线ad hoc网络等非集中式网络中建立证书可能非常麻烦。已经提出了许多分布式解决方案来解决这个问题。公钥基础设施设计中的一个重要部分是撤销过时和滥用证书的规定。我们假设妥协的妥协金额在其直接邻域中的节点中最有效地反映出了临时网络中的任何节点。基于这一点,在本文中,我们介绍了一个基于代理的解决方案,即滥用某个节点的信息以确定客户端是否可以接受节点的证书。基于代理的架构对于在分布式网络中建立智能非常有用。我们探讨了代理对互联网(VIS-A-VIS:网络安全)的关键方面之一的效果,这些方面在实际水平上没有被基于代理的代理商。通过我们的实验,我们提供了一个平台,即可通过互联网和实用企业组织建模代理商进行建模。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号