iSecurity : A Security Framework for Interactive Workspaces

iSecurity : A Security Framework for Interactive Workspaces
复制标题

iSecurity:交互式工作空间的安全框架

DOI:
--
复制
发表时间:
2003
期刊:
--
影响因子:
--
通讯作者:
yeejiun
yeejiun
中科院分区:
--
文献类型:
--
作者:
YeeJiun Song;Wendy Tobagus;D. Leong;Brad Johanson;A. Fox;yeejiun

文献摘要

被引文献

相似文献

安全性是普适计算中一个重要而开放的问题。最近的工作重点要么是开发适合各种无处不在的计算环境的安全模型,要么是将上下文感知与传统安全机制相结合以提供上下文感知安全。在本文中,我们研究了一个具体的实例,无处不在的计算-交互式的,并提出了一个安全框架,iSecurity,在这个环境中。特别是,我们调查的iROS为基础的交互式集群和利用的事实,在这些环境中的所有通信必须通过事件堆。我们与ubicomp中现有的工作不同的是,我们将安全策略的实施分发给各个客户端应用程序,同时将身份验证的责任保留在中央服务器上。这种身份验证和策略实施的分离提供了一个强大的框架,支持动态变化的应用程序和用户集。虽然安全机制会产生性能成本,但我们的系统能够满足交互式工作空间的人类级别的性能需求,在正常工作负载下,往返延迟小于100 ms。iSecurity与现有的Event Heap应用程序完全向后兼容,允许将其部署到基于iROS的交互式服务器中,对日常操作的干扰最小。
Security is an important and open issue in ubiquitous computing. Recent work has focused either on developing models of security suitable for various ubiquitous computing environments, or on the coupling of context-awareness with traditional security mechanisms to provide context-aware security. In this paper, we examine a specific instance of ubiquitous computing — interactive workspaces — and propose a security framework, iSecurity, for this environment. In particular, we investigate iROS-based interactive workspaces and exploit the fact that all communications in these environments have to pass through the Event Heap. We differ from existing work in ubicomp by distributing security policy enforcement to individual client applications while keeping the responsibility of authentication on a central server. This decoupling of authentication and policy enforcement provides a powerful framework that supports a dynamically changing set of applications and users. While security mechanisms incur a performance cost, our system is capable of meeting the human level performance needs of an interactive workspace by offering a round-trip latency of less than 100 ms with normal workloads. iSecurity is fully backwards compatible with existing Event Heap applications, allowing its deployment into iROS-based interactive workspaces with minimal disruption to their daily operation.