首页> 外文OA文献 >Secure Component Deployment in the OSGi(tm) Release 4 Platform
【2h】

Secure Component Deployment in the OSGi(tm) Release 4 Platform

机译:OsGi(tm)第4版平台中的安全组件部署

摘要

Last years have seen a dramatic increase in the use of component platforms,not only in classical application servers, but also more and more in the domainof Embedded Systems. The OSGi(tm) platform is one of these platforms dedicatedto lightweight execution environments, and one of the most prominent. However,new platforms also imply new security flaws, and a lack of both knowledge andtools for protecting the exposed systems. This technical report aims atfostering the understanding of security mechanisms in component deployment. Itfocuses on securing the deployment of components. It presents the cryptographicmechanisms necessary for signing OSGi(tm) bundles, as well as the detailedprocess of bundle signature and validation. We also present the SFelixplatform, which is a secure extension to Felix OSGi(tm) frameworkimplementation. It includes our implementation of the bundle signature process,as specified by OSGi(tm) Release 4 Security Layer. Moreover, a tool for signingand publishing bundles, SFelix JarSigner, has been developed to convenientlyintegrate bundle signature in the bundle deployment process.
机译:近年来,不仅在经典应用程序服务器中,而且在嵌入式系统领域中,组件平台的使用也急剧增加。 OSGi(tm)平台是专用于轻量级执行环境的平台之一,也是最著名的平台之一。但是,新平台也意味着新的安全漏洞,并且缺乏保护裸露系统的知识和工具。本技术报告旨在促进对组件部署中的安全机制的理解。它专注于确保组件的部署。它介绍了对OSGi(tm)捆绑包进行签名所需的加密机制,以及捆绑包签名和验证的详细过程。我们还介绍了SFelix平台,它是对Felix OSGi(tm)框架实现的安全扩展。它包括由OSGi(tm)版本4安全层指定的包签名过程的实现。此外,已经开发了用于签名和发布包的工具SFelix JarSigner,以方便地在包部署过程中集成包签名。

著录项

  • 作者单位
  • 年度 2006
  • 总页数
  • 原文格式 PDF
  • 正文语种 {"code":"fr","name":"French","id":14}
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号