MobileGuardian: A Security Policy Enforcement Framework for Mobile Devices

被引:0
|
作者
Wang, Yong [1 ]
Vangury, Karthik [1 ]
Nikolai, Jason [1 ]
机构
[1] Dakota State Univ, Coll Business & Informat Syst, Madison, SD 57042 USA
关键词
mobile device; security policy; isolation; formulation; testing; enforcement;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Mobile devices such as smartphones and tablets are widely used for personal and business uses. Compared to personal mobile subscribers, enterprises have more concerns about mobile device security. The challenges an enterprise may face include unlimited access to corporate resources, lack of encryption on corporate data, unwillingness to backup data, etc. Many of these issues have been resolved by auditing and enforcing security policies in enterprise networks. However, it is difficult to audit and enforce security policies on mobile devices. A substantial discrepancy exists between enterprise security policy administration and security policy enforcement. In this paper, we propose a framework, MobileGuardian, for security policy enforcement on mobile devices. Security policy enforcement is further divided into four issues, i.e., sensitive data isolation, security policy formulation, security policy testing, and security policy execution. The proposed framework is secure, flexible, and scalable. It can be adopted on any mobile platforms to implement access control, data confidentiality, security, and integrity.
引用
收藏
页码:197 / 202
页数:6
相关论文
共 50 条
  • [1] Efficient security policy enforcement for the mobile environment
    Atluri, Vijayalakshmi
    Shin, Heechang
    Vaidya, Jaideep
    JOURNAL OF COMPUTER SECURITY, 2008, 16 (04) : 439 - 475
  • [2] An Android runtime security policy enforcement framework
    Hammad Banuri
    Masoom Alam
    Shahryar Khan
    Jawad Manzoor
    Bahar Ali
    Yasar Khan
    Mohsin Yaseen
    Mir Nauman Tahir
    Tamleek Ali
    Quratulain Alam
    Xinwen Zhang
    Personal and Ubiquitous Computing, 2012, 16 : 631 - 641
  • [3] An Android runtime security policy enforcement framework
    Security Engineering Research Group , Institute of Management Sciences, 1-A, E-5, Phase VII, Hayatabad, Peshawar, Pakistan
    不详
    Pers. Ubiquitous Comp., 6 (631-641):
  • [4] An Android runtime security policy enforcement framework
    Banuri, Hammad
    Alam, Masoom
    Khan, Shahryar
    Manzoor, Jawad
    Ali, Bahar
    Khan, Yasar
    Yaseen, Mohsin
    Tahir, Mir Nauman
    Ali, Tamleek
    Alam, Quratulain
    Zhang, Xinwen
    PERSONAL AND UBIQUITOUS COMPUTING, 2012, 16 (06) : 631 - 641
  • [5] A Security Monitoring Framework for Mobile Devices
    Lima, Antonio
    Rosa, Luis
    Cruz, Tiago
    Simoes, Paulo
    ELECTRONICS, 2020, 9 (08) : 1 - 25
  • [6] Security network policy enforcement through a SDN framework
    Berardi, Davide
    Callegati, Franco
    Melis, Andrea
    Prandini, Marco
    2018 28TH INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2018, : 97 - 100
  • [7] DiSPEL: A Framework for SoC Security Policy Synthesis and Distributed Enforcement
    Paria, Sudipta
    Dasgupta, Aritra
    Bhunia, Swarup
    2024 IEEE INTERNATIONAL SYMPOSIUM ON HARDWARE ORIENTED SECURITY AND TRUST, HOST, 2024, : 271 - 281
  • [8] Kratos: Discovering Inconsistent Security Policy Enforcement in the Android Framework
    Shao, Yuru
    Ott, Jason
    Chen, Qi Alfred
    Qian, Zhiyun
    Mao, Z. Morley
    23RD ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2016), 2016,
  • [9] Dynamic security framework for mobile agent systems: Specification, verification and enforcement
    Loulou, Monia
    Jmaiel, Mohamed
    Mosbah, Mohamed
    International Journal of Information and Computer Security, 2009, 3 (3-4) : 321 - 336
  • [10] SPE: Security and Privacy Enhancement Framework for Mobile Devices
    Krupp, Brian
    Sridhar, Nigamanth
    Zhao, Wenbing
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2017, 14 (04) : 433 - 446