• DocumentCode
    3004966
  • Title

    Polite: A policy framework for building managed mobile apps

  • Author

    Kumar, Udaya ; Kodeswaran, Palanivel ; Nandakumar, V. ; Kapoor, Shubham

  • Author_Institution
    Comp. Inf. Sci. & Eng., Univ. of Florida, Gainesville, FL, USA
  • fYear
    2012
  • fDate
    Oct. 29 2012-Nov. 1 2012
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    The proliferation of smart phones inside enterprises and the number of enterprise apps (applications) available for various smart phone platforms has been increasing. This trend is expected to continue as smart phones tend to become the device of choice to access both enterprise and personal data. Making enterprise sensitive data accessible on smart phones requires that adequate protection mechanisms be available on these devices to ensure that sensitive data is not compromised due to various reasons, such as employees losing phones to malicious apps (installed by the user) running on the phones. Most of the existing solutions either provide device level control or have an external agent monitoring the application´s behavior, and has numerous limitations. In this paper we propose a framework, Polite, to build enterprise mobile apps that can be managed at run-time, which is less intrusive to the end user while providing stronger security guarantees to the enterprise. We describe several critical scenarios where controlling the run time behavior of apps on the phone is essential and how our architecture can provide security guarantees that are not possible with existing solutions. Performance results of our implementation indicate that our framework induces a minimal overhead of only 6% that may be acceptable for most enterprise mobile apps.
  • Keywords
    security of data; smart phones; Polite; critical scenarios; device level control; enterprise apps; enterprise data; external agent monitoring; malicious apps; managed mobile apps; minimal overhead; personal data; policy framework; run time behavior; smart phones; stronger security; Libraries; Mobile communication; Monitoring; Security; Servers; Smart phones;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    MILITARY COMMUNICATIONS CONFERENCE, 2012 - MILCOM 2012
  • Conference_Location
    Orlando, FL
  • ISSN
    2155-7578
  • Print_ISBN
    978-1-4673-1729-0
  • Type

    conf

  • DOI
    10.1109/MILCOM.2012.6415731
  • Filename
    6415731