课题基金 / 基金详情

Security Protocols for Pervasive Computing Applications

Security Protocols for Pervasive Computing Applications
普适计算应用的安全协议
批准号:
0208631
负责人:
Srini Devadas
金额:
$27.0万
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2002
资助国家:
美国
项目状态:
已结题
起止时间:
2002-09-01 至 2005-08-31

项目摘要

项目成果

Srini Devadas的其他基金

相似基金

相关文献

中文摘要
翻译
将可穿戴和嵌入式设备集成到普适计算环境中需要高度关注安全和隐私问题。 研究了一种安全普适计算的系统结构及其相关协议,该系统结构基于每个设备都有一个软件代理。系统中的所有对象,例如,电器、可穿戴小配件、软件代理和用户具有相关联的可信软件代理,所述可信软件代理在电器上的嵌入式处理器上或在可信计算机上运行。在设备具有最小计算能力并且通过有线或无线网络与其代理通信的情况下,所提出的系统中的通信遵守所提出的设备到代理协议。 它还建议,代理相互通信使用安全的代理到代理协议的基础上SPKI/SDSI(简单的公钥基础设施/简单的分布式安全基础设施)。 一些设备,例如,终端或显示器可能不被信任,或者它们的安全性可能受到损害,但是用户可能仍然希望使用它们,因为它们提供了大屏幕或大带宽资源。 提出了一种基于视觉认证的不可信计算机协议,使得用户可以使用不可信计算机和认证显示的信息以及安全地与远程应用程序进行通信。使用上述架构思想,提出了一种允许安全而有效地访问联网的移动的设备的普适计算环境的设计和实现。
英文摘要
The integration of wearable and embedded devices into a pervasive computing environment requires significant attention to security and privacy issues. A system architecture with associated protocols for secure pervasive computing is investigated.The system architecture is based on the existence of a software proxy for each device. All objects in the system, e.g., appliances, wearable gadgets, software agents, and users have associated trusted software proxies that either run on an embedded processor on the appliance, or on a trusted computer. In the case where the device has minimal computational power, and communicates to its proxy through a wired or wireless network, the communication in the proposed system adheres to a proposed device-to-proxy protocol. It is also proposed that proxies communicate with each other using a secure proxy-to-proxy protocol based on SPKI/SDSI (Simple Public Key Infrastructure / Simple Distributed Security Infrastructure). Some devices, e.g., terminals or displays, may not be trusted or their security might be compromised, but users may still wish to use them, because they provide a large screen or large bandwidth resources. An untrusted computer protocol based on visual authentication is proposed such that users can use the untrusted computer and authenticate displayed information as well as communicate securely to a remote application.Using the architectural ideas described above, the design and implementation of a pervasive-computing environment which allows for secure, yet efficient, access to networked, mobile devices is proposed.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: CORE: Medium: Provably Secure, Usable, and Performant Enclaves in Multicore Processors
SaTC: CORE: Medium: Collaborative: Hardening Off-the-Shelf Software Against Side Channel Attacks
SaTC: CORE: Small: Design of Efficient, Horizontally-Scaling, and Strongly Anonymous Communication Networks
SPX: Collaborative Research: Distributed Database Management with Logical Leases and Hardware Transactional Memory
海外基金