首页> 外文学位 >Security and trust management in collaborative computing.
【24h】

Security and trust management in collaborative computing.

机译:协作计算中的安全性和信任管理。

获取原文
获取原文并翻译 | 示例

摘要

Security and privacy issues have long been investigated in the context of a single organization exercising control over its users' access to resources. In such a computing environment, security policies are defined and managed statically within the boundary of an organization and are typically centrally controlled. However, developing large-scale Internet-based application systems presents new challenges. This is because we do not deal with just user authentication and access control of the resources of a single organization. Rather, we deal with a network of interconnected systems and the sharing of all types of resources that belong to these organizations. There is a need for a model, a language, and a framework for modeling, specifying, and enforcing the agreement established by collaborating organizations with respect to trust and security issues. This trust agreement is needed to establish inter-organizational security policies that govern the interaction, coordination, collaboration, and resource sharing of the collaborative community.; Our study conducted basic research on and developed application-level, trust-based security technologies to support Internet-based collaborative systems. It has four specific accomplishments. First, we introduced a way to define trust agreements and develop a language for specifying the agreements. A trust agreement establishes inter-organizational security policies and constraints regarding message exchanges and resource sharing, and enables collaboration among organizations, which are originally disjointed and have their own security policies and constraints. Second, we developed a security model to capture relationships among the concepts and modeling constructs of trust and the concepts and modeling constructs of a conventional access control model. By treating trust-related concepts and constructs as "first-class" security concepts and constructs, the model allows the specification of trust policies at the inter-organizational level, which is not supported in traditional security models. Third, we established a set of criteria for evaluating nonrepudiation protocols for 13213 electronic-commerce; and developed a new protocol that meets the criteria. Fourth, we designed and implemented a prototype of a network-based trust and security management system to demonstrate the enforcement of inter-organizational security policies and constraints.
机译:长期以来,在一个组织对其用户对资源的访问进行控制的情况下,已经对安全和隐私问题进行了调查。在这样的计算环境中,安全策略是在组织边界内静态定义和管理的,通常是集中控制的。然而,开发大规模的基于因特网的应用系统提出了新的挑战。这是因为我们不仅仅处理单个组织的用户身份验证和资源访问控制。相反,我们处理的是互连系统的网络以及属于这些组织的所有类型资源的共享。需要一种模型,语言和框架来建模,指定和执行由协作组织就信任和安全问题建立的协议。需要此信任协议来建立组织间安全策略,以管理协作社区的交互,协调,协作和资源共享。我们的研究进行了基础研究,并开发了应用程序级,基于信任的安全技术以支持基于Internet的协作系统。它有四个具体成就。首先,我们介绍了一种定义信任协议并开发用于指定协议的语言的方法。信任协议建立了组织间的安全策略和有关消息交换和资源共享的约束,并使组织之间的协作成为可能,而这些组织最初是脱节的并具有自己的安全策略和约束。第二,我们开发了一个安全模型来捕获信任的概念和建模结构与常规访问控制模型的概念和建模结构之间的关系。通过将与信任相关的概念和结构视为“一流”安全概念和结构,该模型允许在组织间级别指定信任策略,而传统安全模型不支持这种规范。第三,我们建立了一套评估13213电子商务不可否认协议的标准。并开发了符合标准的新协议。第四,我们设计并实现了基于网络的信任和安全管理系统的原型,以演示组织间安全策略和约束的实施。

著录项

  • 作者

    Yang, Seokwon.;

  • 作者单位

    University of Florida.;

  • 授予单位 University of Florida.;
  • 学科 Computer Science.
  • 学位 Ph.D.
  • 年度 2003
  • 页码 105 p.
  • 总页数 105
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 自动化技术、计算机技术 ;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号