• DocumentCode
    2585513
  • Title

    Certificate-based Access Control in Pure P2P Networks

  • Author

    Palomar, Esther ; Estevez-Tapiador, Juan M. ; Hernandez-Castro, Julio C. ; Ribagorda, Arturo

  • Author_Institution
    Dept. of Comput. Sci., Carlos III Univ., Madrid
  • fYear
    2006
  • fDate
    6-8 Sept. 2006
  • Firstpage
    177
  • Lastpage
    184
  • Abstract
    Pure peer-to-peer (P2P) networks are characterized as being extremely decentralized and self-organized, properties which are essential in a number of environments, including teamwork, collaborative, and ad-hoc systems. One of the features offered by P2P networks is the possibility of having several replicas of the same content distributed among multiple nodes. Despite its advantages (e.g. robustness and fault tolerance), it is crucial to guarantee content authenticity, as well as to enforce appropriate access control policies. However, the extremely decentralized nature of these environments makes impossible to apply classic solutions that rely on some kind of fixed infrastructure, typically in the form of on-line trusted third parties. In a previous work, we presented a protocol for content authentication based on public key certificates that does not rely on the existence of a public key infrastructure. In this paper, we show how these certificates can be extended to provide authorization capabilities. In our scheme, each peer classifies her contents according to several security labels. Peers allowed to access a given content must have a security clearance of at least the same level that the content´s. These security clearances, which take the form of attributes in public key certificates, can be discretionally issued by the content provider
  • Keywords
    authorisation; message authentication; peer-to-peer computing; protocols; public key cryptography; P2P network; access control; authorization capability; content authentication; content provider; guarantee content authenticity; public key certificates; public key infrastructure; security clearance; Access control; Access protocols; Authentication; Collaboration; Fault tolerance; Peer to peer computing; Public key; Robust control; Security; Teamwork;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Peer-to-Peer Computing, 2006. P2P 2006. Sixth IEEE International Conference on
  • Conference_Location
    Cambridge
  • Print_ISBN
    0-7695-2679-9
  • Type

    conf

  • DOI
    10.1109/P2P.2006.7
  • Filename
    1698608