Fine-Grain Configurability for Secure Communication
نویسندگان
چکیده
Current solutions for providing communication security in network applications allow customization of certain security attributes and techniques, but in limited ways and without the benefit of a single unifying framework. Here, the design of a highly-customizable extensible service called SecComm is described in which attributes such as authenticity, privacy, integrity, and non-repudiation can be customized in arbitrary ways. With SecComm, applications can open secure communication connections in which only those attributes selected from among a wide range of possibilities are enforced, and are enforced using the strength or technique desired. SecComm has been implemented using Cactus, a system for building configurable communication services. In Cactus, different properties and techniques are implemented as software modules called micro-protocols that interact using an event-driven execution paradigm. This non-hierarchical design approach has a high degree of flexibility, yet provides enough structure and control that it is easy to build collections of micro-protocols realizing a large number of diverse properties. This paper gives an overview of the design and implementation of SecComm, and gives initial performance figures for a prototype implementation running on a cluster of Pentiums using the Mach MK 7.3 operating system.
منابع مشابه
Descriptive-Procedural Configuration of Communication Bindings
Although declarative configurability still predominates in the context of communication bindings, the hidden policies involved make it an unlikely candidate to cope with the ever increasing variety of demands imposed by forthcoming application domains such as real-time multimedia. In this paper we therefore propose a policy-free descriptiveprocedural alternative for the configuration of communi...
متن کاملExperience with Fine-Grain Communication in EM-X Multiprocessor for Parallel Sparse Matrix Computation
Sparse matrix problems require a communication paradigm different from those used in conventional distributed-memory multiprocessors. We present in this paper how fine-grain communication can help obtain high performance in the experimental distributed-memory multiprocessor, EM-X, developed at ETL, which can handle fine-grain communication very efficiently. The sparse matrix kernel, Conjugate G...
متن کاملSecure Communication in Shotgun Cellular Systems
In this paper, we analyze the secure connectivity in Shotgun cellular systems (SCS: Wireless communication systems with randomly placed base stations) by Poisson intrinsically secure communication graph (IS-graph), i.e., a random graph which describes the connections that are secure over a network. For a base-station in SCS, a degree of secure connections is determined over two channel models: ...
متن کاملImproving Grid Services Security with Fine Grain Policies
Grid computing is a continuously growing research field that concerns the implementation of a large scale resource sharing among different kind of institutions over the Internet. The sharing of resources among untrusted entities poses non trivial security problems. This paper proposes an approach to improve the security of computational services in the grid environment. For each grid service, t...
متن کاملHardware Software Codesign of the Xilinx Microkernel
In this paper, we describe work in progress on a methodology for the hardware-software codesign of the Xilinx Micro-Kernel (XMK), leveraging the Xilinx Platform Studio (XPS) [1]. Combined with the Microblaze [2] softprocessor and the XPS system design framework, XMK is an ideal target for hardware acceleration due its modular design and configurability. Our methodology will target FPGA devices ...
متن کامل