DocumentCode :
2124280
Title :
A Model-Driven Framework for Trusted Computing Based Systems
Author :
Alam, Masoom ; Seifert, Jean-Pierre ; Zhang, Xinwen
Author_Institution :
Univ. of Innsbruck, Innsbruck
fYear :
2007
fDate :
15-19 Oct. 2007
Firstpage :
75
Lastpage :
75
Abstract :
Existing approaches for Trust Management through software alone - by their very principle - are uncompromising and have inherent weaknesses. Once the information leaves the service provider platform, there is no way to guarantee the integrity of the information on the client (or service requestor) platform. The Trusted Computing Group proposed a quantum leap in security, a hardware based "root of trust" by which the integrity of a platform - be a client or service provider can be verified. However, there is no approach for the integration of this novel but essentially straight forward concept into the distributed application development. We believe that the complexity of Trusted Computing (TC) is one of the key factors that will hinder its successful integration within the web services based distributed application realm. Model-driven techniques offer a promising approach to alleviate the complexity of platforms. This contribution has three objectives. First, we detail SECTET - a model-driven framework for leveraging TC concepts at a higher level of abstraction. We secondly elaborate the integration of platform-independent XACML policies with the platform-specific SELinux policies. Thirdly, we share our experiences regarding the implementation results of the SECTET on TC based systems.
Keywords :
Linux; Web services; XML; security of data; Web services based distributed application; hardware based root of trust; model-driven techniques; platform-specific SELinux policies; service provider platform; service requestor; trust management; trusted computing based systems; Access control; Conference management; Distributed computing; Hardware; Information security; Management information systems; National security; Quantum computing; Service oriented architecture; Web services;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Enterprise Distributed Object Computing Conference, 2007. EDOC 2007. 11th IEEE International
Conference_Location :
Annapolis, MD
ISSN :
1541-7719
Print_ISBN :
978-0-7695-2891-5
Type :
conf
DOI :
10.1109/EDOC.2007.52
Filename :
4383983
Link To Document :
بازگشت