首页> 外文期刊>International journal of wireless information networks >A Security Architecture for Reconfigurable Networked Embedded Systems
【24h】

A Security Architecture for Reconfigurable Networked Embedded Systems

机译:可重构网络嵌入式系统的安全体系结构

获取原文
获取原文并翻译 | 示例
       

摘要

Nowadays, networked embedded systems (NESs) are required to be reconfigurable in order to be customizable to different operating environments and/or adaptable to changes in operating environment. However, reconfigurability acts against security as it introduces new sources of vulnerability. In this paper, we propose a security architecture that integrates, enriches and extends a component-based middleware layer with abstractions and mechanisms for secure reconfiguration and secure communication. The architecture provides a secure communication service that enforces application-specific fine-grained security policy. Furthermore, in order to support secure reconfiguration at the middleware level, the architecture provides a basic mechanism for authenticated downloading from a remote source. Finally, the architecture provides a rekeying service that performs key distribution and revocation. The architecture provides the services as a collection of middleware components that an application developer can instantiate according to the application requirements and constraints. The security architecture extends the middleware by exploiting the decoupling and encapsulation capabilities provided by components. It follows that the architecturernresults itself reconfigurable and can span heterogeneous devices. The security architecture has been implemented for different platforms including low-end, resource-poor ones such as Tmote Sky sensor devices.
机译:如今,网络嵌入式系统(NESs)需要可重新配置,以便可以针对不同的操作环境进行自定义和/或适应于操作环境的变化。但是,由于可重新配置性引入了新的漏洞来源,因此不利于安全性。在本文中,我们提出了一种安全体系结构,该体系结构利用抽象和机制来集成,丰富和扩展基于组件的中间件层,以进行安全的重新配置和安全的通信。该体系结构提供了一种安全的通信服务,可实施特定于应用程序的细粒度安全策略。此外,为了支持中间件级别的安全重新配置,该体系结构提供了一种用于从远程源进行经过身份验证的下载的基本机制。最后,该架构提供了执行密钥分发和吊销的密钥更新服务。该体系结构将服务作为中间件组件的集合提供,应用程序开发人员可以根据应用程序要求和约束对其进行实例化。该安全体系结构通过利用组件提供的解耦和封装功能来扩展中间件。因此,该体系结构本身可以重新配置,并且可以跨越异构设备。已为包括低端,资源匮乏的平台(例如Tmote Sky传感器设备)在内的不同平台实现了安全体系结构。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号