A Formal Notion of Trust - Enabling Reasoning about Security Properties

被引:0
|
作者
Fuchs, Andreas [1 ]
Guergens, Sigrid [1 ]
Rudolph, Carsten [1 ]
机构
[1] Fraunhofer Inst Secure Informat Technol SIT, D-64295 Darmstadt, Germany
来源
TRUST MANAGEMENT IV | 2010年 / 321卷
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Historically, various different notions of trust can be found, each addressing particular aspects of ICT systems, e.g. trust in electronic commerce systems based on reputation and recommendation, or trust in public key infrastructures. While these notions support the understanding of trust establishment and degrees of trustworthiness in their respective application domains, they are insufficient for the more general notion of trust needed when reasoning about security in ICT systems. In this paper we present a formal definition of trust to be able to exactly express trust requirements from the view of different entities involved in the system and to support formal reasoning such that security requirements, security and trust mechanisms and underlying trust assumptions can be formally linked and made explicit. Integrated in our Security Modeling Framework this formal definition of trust can support security engineering processes and formal validation and verification by enabling reasoning about security properties w.r.t. trust.
引用
收藏
页码:200 / 215
页数:16
相关论文
共 50 条
  • [1] Formal Reasoning about Physical Properties of Security Protocols
    Basin, David
    Capkun, Srdjan
    Schaller, Patrick
    Schmidt, Benedikt
    ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2011, 14 (02)
  • [2] Reasoning about trust: A formal logical framework
    Demolombe, R
    TRUST MANAGEMENT, PROCEEDING, 2004, 2995 : 291 - 303
  • [3] Pitfalls in Formal Reasoning about Security Protocols
    Moebius, Nina
    Stenzel, Kurt
    Reif, Wolfgang
    FIFTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY, AND SECURITY: ARES 2010, PROCEEDINGS, 2010, : 248 - 253
  • [4] Formal Reasoning About Privacy and Trust in Loyalty Systems
    Decroix, Koen
    Lapon, Jorn
    Lemaire, Laurens
    De Decker, Bart
    Naessens, Vincent
    BUSINESS INFORMATION SYSTEMS WORKSHOPS, BIS 2015, 2015, 228 : 211 - 223
  • [5] Formal Reasoning About the Security of Amazon Web Services
    Cook, Byron
    COMPUTER AIDED VERIFICATION (CAV 2018), PT I, 2018, 10981 : 38 - 47
  • [6] Formal Modeling and Reasoning about the Android Security Framework
    Armando, Alessandro
    Costa, Gabriele
    Merlo, Alessio
    TRUSTWORTHY GLOBAL COMPUTING, TGC 2013, 2013, 8358 : 64 - 81
  • [7] Reasoning About Trust and Belief Change on a Social Network: A Formal Approach
    Hunter, Aaron
    INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2017, 2017, 10701 : 783 - 801
  • [8] A Step towards Formal Reasoning on Abstract Security Properties
    Yin, Lihua
    Guo, Yunchuan
    Zhang, Dongyan
    2009 1ST IEEE SYMPOSIUM ON WEB SOCIETY, PROCEEDINGS, 2009, : 26 - +
  • [9] Formal verification of security properties in trust management policy
    Niu, Jianwei
    Reith, Mark
    Winsborough, William
    JOURNAL OF COMPUTER SECURITY, 2014, 22 (01) : 69 - 153
  • [10] Formal reasoning about dialogue properties with automatic support
    Paterno, F
    INTERACTING WITH COMPUTERS, 1997, 9 (02) : 173 - 196