Transient Authentication for Mobile Devices
Transient Authentication for Mobile Devices
批准号:
0208740
负责人:
Brian Noble
金额:
$18.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2002
资助国家:
美国
项目状态:
已结题
起止时间:
2002-09-01 至 2004-08-31
中文摘要
计算机如何确定用户请求是真实的?目前,用户必须不时地证明他们的身份,并且假定此身份验证对所有用户请求都有效,直到显式或隐式地撤销它。这种模式不太适合移动设备,因为移动设备容易丢失或被盗。攻击者持有受信任用户的设备,在剩余的身份验证期间拥有该用户的全部权限。需要更频繁身份验证的系统是繁重的;用户禁用或绕过这些保护措施,从而丧失其保护。这个问题可以通过一种称为瞬态身份验证的技术来解决。与其将长期权限投资于移动设备(很容易放置或被盗的东西),不如将其保留在用户佩戴的小身份验证令牌中。本研究探讨了将身份验证(传统上是一个持久属性)变为一个瞬时属性的含义。对进程状态和文件系统状态进行暂态认证。将设计一个应用程序编程接口(API),并将许多应用程序和服务移植到该接口。该系统将通过控制基准进行评估,建立性能和可用性要求。由此产生的系统将提供强大的保护,防止丢失或被盗,而不会给授权用户带来不便。
英文摘要
How does a computer determine that user requests are authentic? Currently, users must prove their identity from time to time, and this authentication is assumed to hold for all user requests until it is either explicitly or implicitly revoked. This model is poorly matched to mobile devices, which are prone to loss or theft. An adversary, holding the device of a trusted user, has the full authority of that user for the remainder of the authentication period. Systems that require more frequent authentication are burdensome; users disable or work around such safeguards, forfeiting their protection. This problem is addressed by a technique called transient authentication. Rather than invest long-term authority with a mobile device---something easily set down or stolen---it is retained within a small authentication token worn by the user. This research explores the implications of making authentication, traditionally a persistent property, into a transient one. Transient authentication will be applied to process state and file system state. An application programming interface (API) will be designed, and a number of applications and services ported to it. The system will be evaluated through controlled benchmarking, establishing the claims of performance and usability. The resulting system will provide strong protection against loss or theft without inconveniencing authorized users.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
CSR:Small: Enabling Sensor-Rich Vehicular Applications with Edge Computing
-
批准号:1717064
-
项目类别:Standard Grant
-
资助金额:$49.94万
-
财政年份:2017
-
负责人:Brian Noble
-
依托单位:
CC-NIE Network Infrastructure: Expanding Connectivity to Campus-Wide Resources for Computational Discovery
-
批准号:1245488
-
项目类别:Standard Grant
-
资助金额:$48.69万
-
财政年份:2013
-
负责人:Brian Noble
-
依托单位:
NSF Workshop on Future Directions of Computer System Research in 2010
-
批准号:1036243
-
项目类别:Standard Grant
-
资助金额:$6.7万
-
财政年份:2010
-
负责人:Brian Noble
-
依托单位:
CSR-PDOS: Availability-Aware Services
-
批准号:0615086
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2006
-
负责人:Brian Noble
-
依托单位:
Student Travel Support: ACM/USENIX MobiSys 2005
-
批准号:0532149
-
项目类别:Standard Grant
-
资助金额:$1.5万
-
财政年份:2005
-
负责人:Brian Noble
-
依托单位:
CSR---PDOS: Information Pedigree
-
批准号:0509089
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Brian Noble
-
依托单位:
CAREER: Fluid Replication
-
批准号:9984078
-
项目类别:Continuing Grant
-
资助金额:$20.0万
-
财政年份:2000
-
负责人:Brian Noble
-
依托单位:
国内基金
海外基金
基于ARM Pointer Authentication的操作系统内核数据保护研究
-
批准号:62002317
-
项目类别:青年科学基金项目
-
资助金额:24.0万元
-
批准年份:2020
-
负责人:申文博
-
依托单位: