Adaptive trust negotiation and access control

Adaptive trust negotiation and access control
复制标题

自适应信任协商和访问控制

DOI:
--
复制
发表时间:
2005
期刊:
ACM Symposium on Access Control Models and Technologies
影响因子:
--
通讯作者:
K. Seamons
K. Seamons
中科院分区:
--
文献类型:
--
作者:
T. Ryutov;Li Zhou;B. C. Neuman;Travis Leithead;K. Seamons

文献摘要

被引文献

相似文献

电子交易经常发生在不同安全域中的业务伙伴之间。信任协商是一种为此类事务提供开放的认证和访问控制环境的方法,但它容易受到恶意攻击,导致拒绝服务或敏感信息泄漏。本文介绍了一种自适应信任协商和访问控制(ATNAC)框架来解决这些问题。该框架结合了两个现有的系统,TrustBuilder和GAA-API,以创建一个比目前任何一个系统都更具灵活性和响应能力的系统。
Electronic transactions regularly occur between business partners in separate security domains. Trust negotiation is an approach that provides an open authentication and access-control environment for such transactions, but it is vulnerable to malicious attacks leading to denial of service or leakage of sensitive information. This paper introduces an Adaptive Trust Negotiation and Access Control (ATNAC) framework to solve these problems. The framework combines two existing systems, TrustBuilder and GAA-API, to create a system with more flexibility and responsiveness to attack than either system currently provides.