• DocumentCode
    2757832
  • Title

    Policy Security Protecting for Negotiating Trust

  • Author

    Li, Dong ; Huan, Linpeng

  • Author_Institution
    Dept. of Comput. Sci. & Eng., Shanghai Jiao Tong Univ., Shanghai
  • fYear
    2007
  • fDate
    16-18 Dec. 2007
  • Firstpage
    213
  • Lastpage
    220
  • Abstract
    The dynamic and cross-organizational aspects of Grid introduce challenging management and policy issues for controlling access to the resources. Automated trust negotiation is an approach which establishes trust between strangers through the bilateral, iterative disclosure of digital credentials. Sensitive credentials are protected by access control policies which may also be communicated to the other party. In this paper, we propose a policy security protecting solution as a mechanism to help prevent unauthorized information inferences during trust negotiation. Compared to the existing safety model, our policy security protecting solution focuses on the actual information gain during trust negotiation instead of the exchanged messages. Thus, it directly reflects the essence of safety in sensitive information protection. Based on the proposed solution, We show that policy security protecting solution achieve the same protection of sensitive information as existing solutions without imposing additional complications to the interaction between negotiation participants or restricting userspsila autonomy in defining their own policies.
  • Keywords
    authorisation; grid computing; Grid computing; access control policies; digital credentials; negotiating trust; policy security protection; sensitive information protection; Access control; Authentication; Authorization; Automatic control; Grid computing; Information security; Internet; Protection; Resource management; Safety; Negotiating Trust; Policy;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Signal-Image Technologies and Internet-Based System, 2007. SITIS '07. Third International IEEE Conference on
  • Conference_Location
    Shanghai
  • Print_ISBN
    978-0-7695-3122-9
  • Type

    conf

  • DOI
    10.1109/SITIS.2007.138
  • Filename
    4618779