(SC)2: Secure Communication over Smart Cards How to Secure Off-Card Matching in Security-by-Contract for Open Multi-application Smart Cards

被引:0
作者
Dragoni, Nicola [1 ]
Lostal, Eduardo [1 ]
Papini, Davide [1 ]
Fabra, Javier [2 ]
机构
[1] Tech Univ Denmark, DTU Informat, Copenhagen, Denmark
[2] Univ Zaragoza, DIIS, E-50009 Zaragoza, Spain
来源
FOUNDATIONS AND PRACTICE OF SECURITY | 2011年 / 6888卷
关键词
Security-by-Contract; Smart Cards; Secure Communication;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Security-by-Contract (SxC) framework has recently been proposed to support software evolution in open multi-application smart cards. The key idea lies in the notion of contract, a specification of the security behavior of an application that must be compliant with the security policy of the card hosting the application. In this paper we address a key issue to realize the SxC idea, namely the outsourcing of the contract-policy matching service to a Trusted Third Party (TTP). In particular, we present the design and implementation of (SC)(2) (Secure Communication over Smart Cards), a system securing the communication between a smart card and the TTP which provides the SxC matching service.
引用
收藏
页码:32 / +
页数:4
相关论文
共 30 条
[1]  
[Anonymous], 1999, RFC 2560
[2]  
[Anonymous], 2002, RSA LAB PKCS 1 V2 1
[3]  
Bertot Y., 2004, TEXT THEORET COMP S
[4]  
Bodei C, 2005, J COMPUT SECUR, V13, P347
[5]  
Cachera D, 2005, LECT NOTES COMPUT SC, V3582, P91
[6]  
Chen Z., 2000, JAVA CARD TECHNOLOGY
[7]  
Dawei Z., 2009, J BEIJING U AERONAUT
[8]  
Desmet Lieven, 2008, Information Security Technical Report, V13, P25, DOI 10.1016/j.istr.2008.02.001
[9]  
Do-Woo Kim, 2002, Information Networking. Wired Communications and Management. International Conference, ICOIN 2002. Revised Papers, Part I (Lecture Notes in Computer Science Vol.2343), P563
[10]  
Dragoni N, 2007, LECT NOTES COMPUT SC, V4582, P297