• DocumentCode
    2218681
  • Title

    Switchboard: secure, monitored connections for client-server communication

  • Author

    Freudenthal, Eric ; Port, Lawrence ; Pesin, Tracy ; Keenan, Edward ; Karamcheti, Vijay

  • Author_Institution
    Dept. of Comput. Sci., New York Univ., NY, USA
  • fYear
    2002
  • fDate
    2002
  • Firstpage
    660
  • Lastpage
    665
  • Abstract
    Prolonged secure communication requires trust relationships that extend throughout a connection´s life cycle. Current tools to establish secure connections such as SSL/TLS and SSH authenticate PKI identities, validate credentials and authorize a trust relationship at the time a connection is established, but do not monitor the trust relationship thereafter To maintain security over the duration of a prolonged connection, we extend the semantics of SSL to support continuous monitoring of a credential´s liveness and the trust relationships that authorize it. Our implementation isolates trust management into a pluggable trust authorization module. We also present an initial design for a host-level secure communication resource that provides secure channels for multiple connections.
  • Keywords
    client-server systems; message authentication; transport protocols; SSL; client-server communication; continuous monitoring; credentials; host-level secure communication resource; pluggable trust authorization module; prolonged secure communication; semantics; trust relationships; Access control; Access protocols; Authorization; Communication channels; Communication switching; Computer science; Computerized monitoring; Protection; Security; Web pages;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Distributed Computing Systems Workshops, 2002. Proceedings. 22nd International Conference on
  • Print_ISBN
    0-7695-1588-6
  • Type

    conf

  • DOI
    10.1109/ICDCSW.2002.1030844
  • Filename
    1030844