课题基金 / 基金详情

Trust Domains - A framework for modelling and designing e-service infrastructures for controlled sharing of information

Trust Domains - A framework for modelling and designing e-service infrastructures for controlled sharing of information
信任域 - 用于建模和设计电子服务基础设施以实现受控信息共享的框架
批准号:
TS/I002529/1
负责人:
Mark Ryan
金额:
$27.26万
依托单位:
依托单位国家:
英国
项目类别:
Research Grant
财政年份:
2011
资助国家:
英国
项目状态:
已结题
起止时间:
2011 至 --

项目摘要

项目成果

Mark Ryan的其他基金

相似基金

相关文献

中文摘要
翻译
点击翻译按钮获取中文摘要
英文摘要
Ensuring flows of information to the right people over multiple collaborating organisations is becoming increasingly important for both business and government. There are, however, trade-offs between the productivity and functional gains from sharing information, on the one hand, and the risks of leakage and opening up IT systems, on the other. Recent developments in trusted computing and virtualization can address these trade offs in a flexible manner, as they allow for the creation of policy controlled IT systems with configurable security properties. Collaborative, secure sharing solutions can be realized through the creation of dynamic 'Trust Domains' --- a notion that we propose to explore at and between all levels of the policy-service-infrastructure stack --- that enforce information flow and configuration policies. We propose a customer-driven project that starts out from examples of information sharing within police forces and agencies they work with. Based on a practical understanding of the required flows and policies, we will develop an abstract framework for qualifying types of and flows of information and a corresponding model of the associated risks. This allows process owners to describe their requirements and concerns. We will research how to qualify and map information flows to Trust Domain configurations, derive guidelines and templates for supporting solution architects in building IT services, and extend our set of analytics and modelling tools to help stakeholders gain an understanding of the risks associated with information flows and enforcement mechanisms.There are business opportunities for creating and operating new e-services with enhanced trust and security properties based on new methodologies and toolsets. The framework we suggest takes a business driven approach to risk, trust and security and covers aspects of process and system analysis, design, configuration, security policy, human roles, and operational management. We create a value proposition by having the models, tools and methodologies that allows us to bridge the current gap between business level risk and system configuration and policy design. Hence mapping service needs onto trusted platforms, domains, and infrastructureThe project complements and expands ongoing, TSB-funded work on trust economics as well as on complexity, risk, and resilience management pioneered and exploited by HP's UK Enterprise Services. Both HP Enterprise Services and HP Labs, Bristol believe that bridging high-level incentive models and systems design for trust domains would be a unique global differentiator, not only aligned with US-NITRD 'game-changing' themes, but ahead of them in suggesting an integrated approach. The academic components of this project will contribute the following developments in support of this programme: - The concept of Trust Domain, at and between the various levels of the socio-technical system stack (policy-service-infrastructure); - Mathematical systems modelling technologies to support tools and methodologies for reasoning about the properties, dynamics, and applications of the Trust Domain concept; - A thorough taxonomy of technical, design, and architectural properties which give rise to different trust characteristics in deployed services; - Modelling the quality of trust and expectations among components, to the extent of being able to make a meaningful comparison of solutions based on different architectural paradigms, within a given context.Targeted market: intra-corporate and intra-governmental data centres and 'clouds' whose stringent information flow control requirements cannot be met by today's providers.
期刊论文(10)
专著(0)
科研奖励(0)
会议论文
Verification of agent knowledge in dynamic access control policies
动态访问控制策略中代理知识的验证
DOI: 10.48550/arxiv.1401.4730
发表时间: 2014
期刊:
影响因子: --
作者: [Koleini M]
通讯作者: Koleini M
StatVerif: Verification of Stateful Processes
StatVerif:状态进程的验证
DOI: 10.1109/csf.2011.10
发表时间: 2011
期刊:
影响因子: --
作者: [Arapinis M]
通讯作者: Arapinis M
DOI: 10.3842/sigma.2014.014
发表时间: 2013-07
期刊: Symmetry Integrability and Geometry-methods and Applications
影响因子: 0.9
作者: [V. Caudrelier;Nicolas Cramp'e;Qi Zhang]
通讯作者: V. Caudrelier;Nicolas Cramp'e;Qi Zhang
DOI: 10.1109/csf.2012.16
发表时间: 2012-06
期刊: 2012 IEEE 25th Computer Security Foundations Symposium
影响因子: --
作者: [Myrto Arapinis;Vincent Cheval;S. Delaune]
通讯作者: Myrto Arapinis;Vincent Cheval;S. Delaune
8
    User-controlled hardware security anchors: evaluation and designs
    • 批准号:
      EP/R012598/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $61.94万
    • 财政年份:
      2018
    • 负责人:
      Mark Ryan
    • 依托单位:
    Academic Centre of Excellence in Cyber Security Research - University of Birmingham
    • 批准号:
      EP/R007128/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $10.34万
    • 财政年份:
      2017
    • 负责人:
      Mark Ryan
    • 依托单位:
    Academic Centre of Excellence in Cyber Security Research - University of Birmingham
    • 批准号:
      EP/L001802/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $5.1万
    • 财政年份:
      2013
    • 负责人:
      Mark Ryan
    • 依托单位:
    Analysing Security and Privacy Properties
    • 批准号:
      EP/H005501/1
    • 项目类别:
      Fellowship
    • 资助金额:
      $126.32万
    • 财政年份:
      2010
    • 负责人:
      Mark Ryan
    • 依托单位:
    海外基金