• DocumentCode
    2232629
  • Title

    NAGUAL: A Novel Automated Trust Negotiation Model Based on Attribute Constraint

  • Author

    Zhang, Shuqin ; Guan, Shangyuan ; Mei, Yiduo ; Pan, Lei

  • Author_Institution
    Sch. of Comput. Sci., Zhongyuan Univ. of Technol., Zhengzhou
  • Volume
    1
  • fYear
    2009
  • fDate
    30-31 May 2009
  • Firstpage
    63
  • Lastpage
    68
  • Abstract
    Automated trust negotiation (ATN) is a promising approach which establishes mutual trust between strangers through the iterative disclosure of digital credentials and access control policies of the two negotiation parties. Although many ATN systems are proposed, some issues still remain to be addressed: (1) their policy languages are coarse-grained; (2) they cannot generate all trust sequences and are short of the mechanism for evaluating trust sequences and selecting an optimal one. Therefore, we present a novel ATN, called NAGUAL. First, attribute constraint is introduced into NAGUAL in order to refine its policy language, which cannot only protect sensitive services and certificates effectively, but also enhance the flexibility of NAGUAL. Second, global access control policy is used to terminate impossible negotiation in advance, which can improve the negotiation efficiency of NAGUAL. Third, we describe the process of generating trust sequence using trust sequence search tree. Based on that tree, breadth-first can generate a trust sequence or all ones. Last, we evaluate trust sequences through disclosure cost and communication overhead for attribute certificates, which facilitates selecting an optimal one. This paper illuminates the usage of NAGUAL by using a typical example.
  • Keywords
    authorisation; tree searching; access control; attribute constraint; automated trust negotiation model; digital credential; policy language; search tree; trust sequence; Access control; Collaboration; Computer science; Cost function; Electronic mail; Iterative methods; Large-scale systems; Peer to peer computing; Privacy; Protection; access control policy; attribute constraint; automated trust negotiation; trust sequence;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Networking and Digital Society, 2009. ICNDS '09. International Conference on
  • Conference_Location
    Guiyang, Guizhou
  • Print_ISBN
    978-0-7695-3635-4
  • Type

    conf

  • DOI
    10.1109/ICNDS.2009.22
  • Filename
    5116212