Title :
An Efficient and Minimum Sensitivity Cost Negotiation Strategy in Automated Trust Negotiation
Author :
He, Yan ; Zhu, Miaoliang ; Zheng, Chunying
Author_Institution :
Coll. of Comput. Sci., Zhejiang Univ., Hangzhou
Abstract :
Traditional security model, where the identity of all possible requesting subjects must be pre-registered in advance, is not suitable for the distributed applications with strong real-time requirements. A promising approach is represented by automated trust negotiation, which establishes trust between strangers through the exchange of digital credentials and the use of access control policies. As the credentials contain sensitive information, entities disclose credentials circumspectly. Given multiple credential exchange sequences achieving the same result, it is desirable to pick the sequence that discloses a set of minimum sensitive credentials. In this paper, we model the policies participating trust negotiation as a negotiation Petri net and propose a trust negotiation MSC strategy, which works by the characteristics of negotiation Petri net architecture, the behaviors of auto trust negotiation and the greedy algorithm. We prove that the MSC strategy is complete, efficient and mini-sensitivity cost. It also makes sure that no irrelevant credentials will be disclosed during negotiations.
Keywords :
Petri nets; authorisation; greedy algorithms; access control; automated trust negotiation; digital credentials exchange; greedy algorithm; minimum sensitivity cost; negotiation Petri net architecture; security model; sensitivity cost negotiation; Access control; Application software; Computer science; Computer security; Costs; Educational institutions; Greedy algorithms; Helium; Protection; Software engineering; automated trust negotiation; minimum sensitivity cost; negotiation strategy;
Conference_Titel :
Computer Science and Software Engineering, 2008 International Conference on
Conference_Location :
Wuhan, Hubei
Print_ISBN :
978-0-7695-3336-0
DOI :
10.1109/CSSE.2008.867