Title :
Applying Kerberos to the communication environment for information appliances
Author :
Sakane, Shoichi ; Okabe, Nobuo ; Kamada, Ken-Ichi ; Esaki, Hiroshi
Abstract :
When IPv6 deploys, each information appliance shall have a global IP address and communicate directly with each other. Some devices may have much lower processing performance than PCs have due to various limitations (e.g. cost, physical size, power consumption). Such devices must have a security function, that is confidentiality, integrity and access control, for provision of privacy even with a home networking environment. The information appliances shall move around the global network with the users. We assume these devices are used in the home and we describe the methodologies to achieve access control using Kerberos and to deal with changes of IP addresses using modified Kerberos. IPv6 has a security mechanism called "IPsec" for secure communication. In order to use the IPsec, peering communicating devices have to share a symmetric key to maintain the confidentiality and/or the integrity. We also describe a method so that these restricted devices can share a symmetric key securely.
Keywords :
Internet; authorisation; data integrity; data privacy; home computing; network operating systems; transport protocols; IPsec; IPv6; Internet; Kerberos; access control; data confidentiality; data integrity; global IP address; home networking; information appliances; performance; secure communication; security function; symmetric key; Access control; Home appliances; IP networks; Information science; Information security; Internet; Personal communication networks; Plugs; Privacy; Video recording;
Conference_Titel :
Applications and the Internet Workshops, 2003. Proceedings. 2003 Symposium on
Print_ISBN :
0-7695-1873-7
DOI :
10.1109/SAINTW.2003.1210159