Extending Jini with Decentralized Trust Management
نویسندگان
چکیده
Decentralized Trust Management, originally introduced by the PolicyMaker and SDSI prototypes, and currently promoted at least by the KeyNote2, SPKI, and TeSSA development efforts, provides a means of distributed authorization that seems to be especially suitable for distributed object systems and agent based systems. In this paper we introduce the SIESTA project, which studies how to integrate the ideas of decentralized trust management to the Jini environment. The focus of the functionality is on the use of SPKI certificates to secure Jini services. Controlling untrusted code is also an important issue because to use a Jini service one has to rely on proxy code loaded from the network. The resulting system allows decentralized authorization and trust management of Jini-based services and applications.
منابع مشابه
Combining Trust Management, Jini, IPv6, and Wireless links: A Proposal for a Service Network Architecture for Ad Hoc Environments Extended Abstract
In this paper, we present a novel communications architecture for future TCP/IP based networks. The architecture aims to provide unified services both at the network and service layers. The architecture is based on decentralized trust management, IPv6, and Jini. The aim of the architecture is to support infrastructureless operations. The desired features can be summarized into the next five req...
متن کاملDecentralized Jini Security
Among the different approaches to distributed computing, the Jini technology provides a number of very promising methods for attacking the fundamental problems involved. Programs built according to the Jini principles will be able to function and survive in highly dynamic network environments, allowing applications to adapt their behaviour to the requirements of the current context. Unfortunate...
متن کاملTool Support for Incorporating Trust Models into Decentralized Applications
The role of decentralized trust and reputation management in the establishment of trust relationships between peers in decentralized applications has been well-recognized. Several reputation-based trust models exist in the literature. PACE is an architectural style for decentralized trust management. PACE provides specific principles that guide the incorporation of trust and reputation models w...
متن کاملTrust Management and Trust Negotiation in an Extension of SQL
Security policies of large organizations cannot be expressed in the access control policy language defined by the SQL standard and provided by widely used relational database systems, because that language does not support the decentralized policies that are common in large organizations. Trust management frameworks support decentralized policies but generally have not been designed to integrat...
متن کاملPolicy Based Framework for Trust Management and Evolution of Peer to Peer Groups
Peer to peer collaborative groups are becoming increasingly popular for collaborative applications like video/audio conferencing, IP telephony, file sharing, collaborative work spaces, and multi-user games. The decentralized nature of these groups gives rise to the need of a secure group layer which integrates authentication, admission control, authorization, access control and key management. ...
متن کامل