Switchboard: Secure, monitored connections for client-server communication

被引:1
|
作者
Freudenthal, E [1 ]
Port, L [1 ]
Pesin, T [1 ]
Keenan, E [1 ]
Karamcheti, V [1 ]
机构
[1] NYU, Courant Inst Math Sci, Dept Comp Sci, New York, NY 10012 USA
关键词
D O I
10.1109/ICDCSW.2002.1030844
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Prolonged secure communication requires trust relationships that extend throughout a connection's life cycle. Current tools to establish secure connections such as SSL/TLS and SSH authenticate PKI identities, validate credentials and authorize a trust relationship at the time a connection is established, but do not monitor the trust relationship thereafter To maintain security over the duration of a prolonged connection, we extend the semantics of SSL to support continuous monitoring of a credential's liveness and the trust relationships that authorize it. Our implementation isolates trust management into a pluggable trust authorisation module. We also present an initial design for a host-level secure communication resource that provides secure channels for multiple connections.
引用
收藏
页码:660 / 665
页数:6
相关论文
共 50 条
  • [31] CREATING A CLIENT-SERVER STRATEGY
    KING, WR
    INFORMATION SYSTEMS MANAGEMENT, 1994, 11 (03) : 71 - 74
  • [32] THE BEST IN CLIENT-SERVER COMPUTING
    RICCIUTI, M
    DATAMATION, 1994, 40 (05): : 26 - &
  • [33] Implementation of a client-server environment
    Baer, M
    INNOVATIONS IN INFORMATION TECHNOLOGY: A DECISIVE FACTOR IN THE FURTHER DEVELOPMENT OF SOCIAL SECURITY SYSTEMS: SOCIAL SECURITY DOCUMENTATION, 1997, : 185 - 200
  • [34] Queueing in client-server systems
    Liu, ML
    Cong, B
    INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED PROCESSING TECHNIQUES AND APPLICATIONS, VOLS I-IV, PROCEEDINGS, 1998, : 551 - 558
  • [35] CLIENT-SERVER CHAOS BUSTERS
    SNELL, N
    DATAMATION, 1994, 40 (20): : 45 - &
  • [36] Client-server and enterprise computing
    不详
    IEEE INTERNET COMPUTING, 1999, 3 (02) : 11 - 11
  • [37] FOXY MOVE TO CLIENT-SERVER
    LINTHICUM, DS
    BYTE, 1995, 20 (08): : 117 - &
  • [38] Distributed Client-Server Assignment
    Duong-Ba, Thuan
    Nguyen, Thinh
    37TH ANNUAL IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2012), 2012, : 296 - 299
  • [39] Client-Server Password Recovery
    Chmielewski, Lukasz
    Hoepman, Jaap-Henk
    van Rossum, Peter
    ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS: OTM 2009, PT 2, 2009, 5871 : 861 - 878
  • [40] USABILITY AND CLIENT-SERVER COMPUTING
    不详
    I-S ANALYZER, 1992, 30 (03): : 1 - 10