DocumentCode
2124280
Title
A Model-Driven Framework for Trusted Computing Based Systems
Author
Alam, Masoom ; Seifert, Jean-Pierre ; Zhang, Xinwen
Author_Institution
Univ. of Innsbruck, Innsbruck
fYear
2007
fDate
15-19 Oct. 2007
Firstpage
75
Lastpage
75
Abstract
Existing approaches for Trust Management through software alone - by their very principle - are uncompromising and have inherent weaknesses. Once the information leaves the service provider platform, there is no way to guarantee the integrity of the information on the client (or service requestor) platform. The Trusted Computing Group proposed a quantum leap in security, a hardware based "root of trust" by which the integrity of a platform - be a client or service provider can be verified. However, there is no approach for the integration of this novel but essentially straight forward concept into the distributed application development. We believe that the complexity of Trusted Computing (TC) is one of the key factors that will hinder its successful integration within the web services based distributed application realm. Model-driven techniques offer a promising approach to alleviate the complexity of platforms. This contribution has three objectives. First, we detail SECTET - a model-driven framework for leveraging TC concepts at a higher level of abstraction. We secondly elaborate the integration of platform-independent XACML policies with the platform-specific SELinux policies. Thirdly, we share our experiences regarding the implementation results of the SECTET on TC based systems.
Keywords
Linux; Web services; XML; security of data; Web services based distributed application; hardware based root of trust; model-driven techniques; platform-specific SELinux policies; service provider platform; service requestor; trust management; trusted computing based systems; Access control; Conference management; Distributed computing; Hardware; Information security; Management information systems; National security; Quantum computing; Service oriented architecture; Web services;
fLanguage
English
Publisher
ieee
Conference_Titel
Enterprise Distributed Object Computing Conference, 2007. EDOC 2007. 11th IEEE International
Conference_Location
Annapolis, MD
ISSN
1541-7719
Print_ISBN
978-0-7695-2891-5
Type
conf
DOI
10.1109/EDOC.2007.52
Filename
4383983
Link To Document