Security Policy Checker and Generator for Java Mobile Codes

Security Policy Checker and Generator for Java Mobile Codes
复制标题

Java 移动代码的安全策略检查器和生成器

DOI:
10.1007/978-0-387-35614-3_15
复制
发表时间:
2002
期刊:
Dementia
影响因子:
--
通讯作者:
K. Kaijiri
K. Kaijiri
中科院分区:
--
文献类型:
--
作者:
H. Kaiya;Hitoshi Furukawa;K. Kaijiri

文献摘要

被引文献

相似文献

Java是最著名的移动代码系统之一,它的组件可以通过internet从其他计算机动态下载。因为这些下载的组件并不总是可靠的,每个组件的行为根据应用程序的策略受到限制。然而,对于应用程序用户或开发人员来说,决定合适的策略并不容易。本文介绍了一个用于生成和检查Java应用程序安全策略的工具。当我们在工具的窗口上以空间方式部署Java组件时,我们可以根据一组安全策略检查哪些组件可以执行,哪些组件不能执行。此外,我们的工具可以生成最小的策略集来执行所有已部署的组件。
Java is one of the most famous mobile code systems, and its components can be dynamically downloaded from the other computers over the internet. Because such downloaded components are not always reliable, behaviors of each component are restricted according to the application’s policy. However, it is not so easy for the application users or developers to decide the suitable policy. In this paper, we introduce a tool for generating and checking the security policies for Java application. As we deploy Java components spatially on a window of our tool, we can check which component can be executed or not with respect to a set of security policies. In addition, our tool can generate the minimal set of policies to execute all the deployed components.