A security framework for mobile agent systems

被引:0
|
作者
Samet, Donies [1 ]
Ktata, Farah Barika [2 ]
Ghedira, Khaled [3 ]
机构
[1] Univ Manouba, Natl Sch Comp Sci ENSI, Tunis, Tunisia
[2] Higher Inst Appl Sci & Technol Sousse, Sousse, Tunisia
[3] Honoris United Univ, Univ Cent Tunis, Tunis, Tunisia
关键词
Mobile agent system; Security; MA-UML profile; Cooperative attacks; MULTIAGENT SYSTEMS; ACCESS-CONTROL; MODEL;
D O I
10.1007/s10515-023-00408-7
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Security is a very important challenge in mobile agent systems due to the strong dependence of agents on the platform and vice versa. According to recent studies, most current mobile agent platforms suffer from significant limitations in terms of security when they face Denial of Service (DOS) attacks. Current security solutions even provided by the mobile agent platforms or by the literature focus essentially on individual attacks and are mainly based on static models that present a lack of the permissions definition and are not detailed enough to face collaborative DOS attacks executed by multiple agents or users. This paper presents a security framework that adds security defenses to mobile agent platforms. The proposed security framework implements a standard security model described using MA-UML (Mobile Agent-Unified Modeling Language) notations. The framework lets the administrator (of agents' place) define a precise and fine-grained authorization policy to defend against DOS attacks. The authorization enforcement in the proposed framework is dynamic : the authorization decisions executed by the proposed framework are based upon run-time parameters like the amount of activity of an agent. We implement an experiment on a mobile agent system of e-marketplaces. Given that we focus essentially on the availability criterion, the performance of the proposed framework on a place is evaluated against DOS and DDOS attacks and investigated in terms of duration of execution that is the availability of the place.
引用
收藏
页数:36
相关论文
共 50 条
  • [31] Mobile agent security and reliability
    Hohl, F
    NINTH INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING, PROCEEDINGS, 1998, : 181 - 181
  • [32] A framework for mobile agent systems with the capability of preceding and following users
    Yokohira, Tokumi
    Okayama, Kiyohiko
    Murakami, Takashi
    Takarako, Kayo
    APSITT 2005: 6TH ASIA-PACIFIC SYMPOSIUM ON INFORMATION AND TELECOMMUNICATION TECHNOLOGIES, PROCEEDINGS, 2005, : 89 - 94
  • [33] A Mobile Agent-Based Framework for Flexible Automation Systems
    Nestinger, Stephen S.
    Chen, Bo
    Cheng, Harry H.
    IEEE-ASME TRANSACTIONS ON MECHATRONICS, 2010, 15 (06) : 942 - 951
  • [34] Security in a mobile agent system
    van't Noordende, GJ
    Brazier, FMT
    Tanenbaum, AS
    2004 IEEE 1ST SYMPOSIUM ON MULTI-AGENT SECURITY & SURVIVABILITY, 2004, : 35 - 45
  • [35] Mobile agent security and Telescript
    Tardo, J
    Valente, L
    DIGEST OF PAPERS: COMPCON SPRING 96, FORTY-FIRST IEEE COMPUTER SOCIETY INTERNATIONAL CONFERENCE - INTELLECTUAL LEVERAGE, 1996, : 58 - 63
  • [36] A mobile agent security management
    You, EG
    Lee, KS
    18TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 2 (REGULAR PAPERS), PROCEEDINGS, 2004, : 360 - 365
  • [37] The research of mobile agent security
    Li, XB
    Zhang, AJ
    Sun, JF
    Yin, ZL
    GRID AND COOPERATIVE COMPUTING, PT 2, 2004, 3033 : 187 - 190
  • [38] Solution to mobile agent security
    Wang, Huifang
    Guo, Zhong
    Huang, Yongzhong
    Guo, Jingeng
    Jisuanji Gongcheng/Computer Engineering, 2002, 28 (01):
  • [39] Countermeasures for mobile agent security
    Jansen, WA
    COMPUTER COMMUNICATIONS, 2000, 23 (17) : 1667 - 1676
  • [40] Security issues related to mobile code and agent-based systems
    Oppliger, R
    COMPUTER COMMUNICATIONS, 1999, 22 (12) : 1165 - 1170