DocumentCode :
1553053
Title :
Secure code distribution
Author :
Zhang, X. Nick
Author_Institution :
955 Escalon Avenue, Sunnyvale, CA, USA
Volume :
30
Issue :
6
fYear :
1997
fDate :
6/1/1997 12:00:00 AM
Firstpage :
76
Lastpage :
79
Abstract :
The Java Virtual Machine does not offer a way for code obtained from trusted sources to be granted extra rights. The article describes two approaches to authentification for code distribution: one extends the JVM to include a digital signature in applets; the other uses MIME encapsulation to take advantage of available security infrastructures. The signed-applet approach gives a programmer more flexibility because it addresses the security issues at a more fundamental level. However, signed-applet security mechanisms may vary for different code distribution schemes, making integration difficult. The MIME-based approach provides a unified security interface. It is more efficient in the sense that all classes can be encapsulated in one multipart attachment, and a single signature or verification operation will cover all classes. The approaches can also be combined and tailored to satisfy various requirements. Ultimately, operating systems must support the concept of a secure compartment so that separate resource management policies can be implemented for the secure compartment and the rest of the system
Keywords :
Internet; data encapsulation; message authentication; object-oriented programming; safety; Java Virtual Machine; MIME encapsulation; applets; authentification; digital signature; operating systems; resource management policies; secure code distribution; secure compartment; security infrastructures; security issues; signature operation; signed-applet security mechanisms; trusted sources; unified security interface; verification operation; Authentication; Authorization; Cryptography; Digital signatures; Java; Protection; Safety; Security; Terminology; Virtual machining;
fLanguage :
English
Journal_Title :
Computer
Publisher :
ieee
ISSN :
0018-9162
Type :
jour
DOI :
10.1109/2.587552
Filename :
587552
Link To Document :
بازگشت