Fuzzy Authentication Using Interaction Provenance in Service Oriented Computing
Fuzzy Authentication Using Interaction Provenance in Service Oriented Computing
复制标题
面向服务计算中使用交互来源的模糊身份验证
DOI:
--
复制
发表时间:
2015
期刊:
影响因子:
--
通讯作者:
Ragib Hasan
中科院分区:
文献类型:
--
作者:
R. Khan;Ragib Hasan
In service oriented computing, authentication factors have their vulnerabilities when considered exclusively. Cross-platform and service composition architectures require a complex integration procedure and limit adoptability of newer authentication models. Authentication is generally based on a binary success or failure and relies on credentials proffered at the present moment without considering how or when the credentials were obtained by the subject. The resulting access control engines suffer from rigid service policies and complexity of management. In contrast, social authentication is based on the nature, quality, and length of previous encounters with each other. We posit that human-to-machine authentication is a similar causal effect of an earlier interaction with the verifying party. We use this notion to propose interaction provenance as the only unified representation model for all authentication factors in service oriented computing. Interaction provenance uses the causal relationship of past events to leverage service composition, cross-platform integration, timeline authentication, and easier adoption of newer methods. We extend our model with fuzzy authentication using past interactions and linguistic policies. The paper presents an interaction provenance recording and authentication protocol and a proof-of-concept implementation with extensive experimental evaluation.
影响因子:
1.2
作者:
Krukow K
通讯作者:
Krukow K