Extracting trust information from security system of a service

被引:21
作者
Bahtiyar, Serif [1 ]
Caglayan, Mehmet Ufuk [1 ]
机构
[1] Bogazici Univ, Dept Comp Engn, Comp Networks Res Lab, TR-34342 Istanbul, Turkey
关键词
Trust; Security; Information extraction; MANAGEMENT; NETWORKS; PRIVACY; MODELS;
D O I
10.1016/j.jnca.2011.10.002
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The issue of trust is a research problem in emerging open environments, such as ubiquitous networks. Such environments are highly dynamic and they contain diverse number of services and autonomous entities. Entities in open environments have different security needs from services. Trust computations related to the security systems of services necessitate information that meets needs of each entity. Obtaining such information is a challenging issue for entities. In this paper, we propose a model for extracting trust information from the security system of a service based on the needs of an entity. We formally represent security policies and security systems to extract trust information according to needs of an entity. The formal representation ensures an entity to extract trust information about a security property of a service and trust information about whole security system of the service. The proposed model is applied to Dental Clinic Patient Service as a case study with two scenarios. The scenarios are analyzed experimentally with simulations. The experimental evaluation shows that the proposed model provides trust information related to the security system of a service based on the needs of an entity and it is applicable in emerging open environments. (C) 2011 Elsevier Ltd. All rights reserved.
引用
收藏
页码:480 / 490
页数:11
相关论文
共 38 条
[1]  
Andert D., 2002, Trust Modeling for Security Architecture Development
[2]  
[Anonymous], 1988, TRUST MAKING BREAKIN
[3]  
[Anonymous], THESIS HELSINKI U TE
[4]  
[Anonymous], 2004, Proceedings of the 13th International Conference on World Wide Web, DOI DOI 10.1145/988672.988727
[5]  
[Anonymous], 1996, TRUST MODERN SOC SEA
[6]  
BAHTIYAR S, 2010, 3 IEEE INT S TRUST S, P803
[7]   Secure knowledge management: Confidentiality, trust, and privacy [J].
Bertino, Elisa ;
Khan, Latifur R. ;
Sandhu, Ravi ;
Thuraisingham, Bhavani .
IEEE TRANSACTIONS ON SYSTEMS MAN AND CYBERNETICS PART A-SYSTEMS AND HUMANS, 2006, 36 (03) :429-438
[8]  
Blaze M., 1996, IEEE S SEC PRIV
[9]   A three-layered model to implement data privacy policies [J].
Canfora, Gerardo ;
Costante, Elisa ;
Pennino, Igino ;
Visaggio, Corrado Aaron .
COMPUTER STANDARDS & INTERFACES, 2008, 30 (06) :398-409
[10]  
Chivers H., 1994, SECURITY SYSTEMS ENG