Flexible Internet Secure Transactions Based on Collaborative Domains
نویسندگان
چکیده
The absence of manageable global key distribution schemes is seriously hindering the deployment of basic security services in the In-ternet. The emergence of cryptosystems based on public key technology has represented a signiicant improvement in this direction by removing the need of a mutual agreement on the encryption key. However, the certiicate structures that bind a user to his public key are diicult to deploy especially in inter-domain environments. As a consequence, although the need for security services like encryption or authentication is becoming crucial, most Internet transactions currently take place without the use of any of these services. This paper proposes a novel approach for simplifying key manageability relying on the notion of security domains. The fundamental idea relies on the fact that key management and thus security services are easier to achieve inside a well connned domain. Consequently, large scale security might be seen as a combination of intra-domain security and a secure framework for transactions between domains. In other words, user keys are managed internally and only domain keys need to be handled globally. We present the cryptographic schemes needed to achieve conndentiality and authentication based on the collaboration of security domains.
منابع مشابه
Towards a Flexible Access Control Mechanism for E-Transactions
Security over the Internet depends on a clear distinction between authorized and un-authorized principals. Discriminating between the two involves: identification (user identifies himself/herself), authentication (the system validates the user’s identity) and authorization (specific rights granted). Thus, it is important to develop specifications for access control that realize the above proper...
متن کاملIntegrating Quantum Cryptography into Ssl
It is well believed now that there are many advantages of integrating quantum cryptography (QC) with the already-existing Internet security infrastructure. SSL/TLS is the protocol that is used for the vast majority of secure transactions over the Internet. However, this protocol needs to be extended in order to create a promising platform for the integration of QC into the Internet infrastructu...
متن کاملA Secure Model to Establish Trust Relationships in Web Services for Virtual Organizations
This paper introduces a model making use of the security proposals based on Web Services architecture that aims to provide guarantees authentication and authorization transfer among different security domains. The model describes a flexible, scalable and secure way to establish trust relationships among Virtual Organization partners and to assign the access rights or roles to each partner in th...
متن کاملMultimedia Architecture Offering Open Distance Learning Services over Internet
The increase in the use of the Internet not only as a repository of resources for learning but also as a means for the delivery of courses and specially prepared teaching material is a particularly significant innovation in the range of education. The main concept here is a Virtual class, which is based on the principles of CSCL (Computer Supported Collaborative Learning) systems. This paper de...
متن کاملA Service-Oriented Secure Infrastructure for Feature-based Data Exchange in Cloud-based Design and Manufacture
Under the impact of service-oriented architecture (SOA) and cloud computing, Cloud-Based Design and Manufacture (CBDM) has been a flexible and effective way for Collaborative Product Development (CPD). As a crucial issue in sharing CAD models for CPD, Feature-Based Data Exchange (FBDE) among heterogeneous CAD systems should be adapted in CBDM. On the other hand, the sensitive information and in...
متن کامل