Formalising dynamic trust negotiations in decentralised collaborative e-Health systems

被引:0
作者
Ajayi, Oluwafemi [1 ]
Sinnott, Richard [1 ]
Stell, Anthony [1 ]
机构
[1] Univ Glasgow, Natl e Sci Ctr, Glasgow G12 8QQ, Lanark, Scotland
来源
ARES 2007: SECOND INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS | 2007年
关键词
trust negotiations; security; P2P;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Access control in decentralised collaborative systems present huge challenges especially where many autonomous entities including organisations, humans, software agents from different security domains seek to access and share resources in a secure and controlled way. Automated trust negotiation (ATN) is one approach that has been proposed for trust discovery and realisation, which enables entities viz. strangers to access resources across autonomous boundaries through iterative exchange of credentials. Various negotiation strategies have been proposed to protect credential disclosure during trust negotiations. However in some domains such as e-Health, not all entities are willing to negotiate credentials or disclose access policies directly to strangers regardless of negotiation strategies and instead prefer to negotiate and disclose sensitive information only to strangers within what we refer to as a circle of trust. In this paper, we introduce a formal model to describe how locally trusted intermediary parties can provide multiple negotiation and delegations hops to protect credentials and access policies. We propose a dynamic trust negotiations (DTN) model that not only protects sensitive information from disclosure but also reduces semantic issues that exist with credentials in decentralised systems. This work is currently being explored and implemented within the e-health domain: specifically in the MRC-funded Virtual Organisation for Trials of Epidemiological Studies (VOTES) project.
引用
收藏
页码:3 / +
页数:2
相关论文
共 15 条
  • [1] Andonoff E, 2005, 2005 IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON INTELLIGENT AGENT TECHNOLOGY, PROCEEDINGS, P619
  • [2] [Anonymous], P NETW DISTR SYST SE
  • [3] BARTOLINI C., 2005, LNCS, V3390, P213
  • [4] Trust negotiations: Concepts, systems, and languages
    Bertino, E
    Ferrari, E
    Squicciarini, AC
    [J]. COMPUTING IN SCIENCE & ENGINEERING, 2004, 6 (04) : 27 - 34
  • [5] NINGHUI L, 2002, P 2002 IEEE S SEC PR
  • [6] SADRI F, 2001, P S INF AG EC AISB 0
  • [7] SINNOTT R, 2006, HEALTHGR 200L C VAL
  • [8] VULKAN N, 1998, ICE 98 P 1 INT C INF, P1
  • [9] Winsborough W.H., 2000, DARPA INF SURV C EXP, P88, DOI DOI 10.1109/DISCEX.2000.824965
  • [10] Winsborough WH, 2002, THIRD INTERNATION WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS, P92, DOI 10.1109/POLICY.2002.1011297