• DocumentCode
    2274672
  • Title

    PEACE : a policy-based establishment of ad-hoc communities

  • Author

    Keoh, Sye Loong ; Lupu, Emil ; Sloman, Morris

  • Author_Institution
    Dept. of Comput., Imperial Coll. London, UK
  • fYear
    2004
  • fDate
    6-10 Dec. 2004
  • Firstpage
    386
  • Lastpage
    395
  • Abstract
    Ad-hoc networks are perceived as communities of autonomous devices that interconnect with each other. Typically, they have dynamic topologies and cannot rely on a continuous connection to the Internet. Users´ devices often do not have a priori knowledge of each other and cannot rely upon pre-existing shared information. This introduces difficult security issues when attempting to provide authentication, membership management and access control. Designing a framework, which allows the secure establishment and management of ad-hoc communities, remains a significant challenge. In this paper, we propose a novel policy-based security framework to facilitate the establishment, evolution and management of mobile ad-hoc networks. We introduce a community specification, called doctrine, which defines the roles of the participants in the community, the characteristics that participants must exhibit in order to be eligible to play a role, as well as the policies governing their behaviour within the community. Based on the doctrine, we propose a set of security protocols to bootstrap the community, manage the membership, and govern the access to the services provided by the participants. We have investigated the impact of mobility on the proposed security protocols and observed that the protocol is robust to changes in the network topology.
  • Keywords
    ad hoc networks; authorisation; message authentication; mobile computing; protocols; Internet; access control; membership management; message authentication; mobile ad-hoc networks; network topology; policy-based security; security protocol; Access control; Access protocols; Ad hoc networks; Authentication; Biomedical monitoring; Collaboration; Context-aware services; Information security; Network topology; Robustness;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Applications Conference, 2004. 20th Annual
  • ISSN
    1063-9527
  • Print_ISBN
    0-7695-2252-1
  • Type

    conf

  • DOI
    10.1109/CSAC.2004.26
  • Filename
    1377246