跳到主要导航 跳到搜索 跳到主要内容

Runtime security verification for itinerary-driven mobile agents

  • Zijiang Yang
  • , Shiyong Lu
  • , Ping Yang
  • Wayne State University
  • State University of New York Binghamton University

科研成果: 书/报告/会议事项章节会议稿件同行评审

4 引用 (Scopus)

摘要

We present a new approach to ensure the secure execution of itinerary-driven mobile agents, in which the specification of the navigational behavior of an agent is separated from the specification of its computational behavior. We empower each host with an access control policy so that the host will deny the access from an agent whose itinerary does not conform to the host's access control policy. A host uses model checking algorithms to check if the itinerary of the agent conforms to its access control policy written in μ-calculus, and if so, grant access permission. In order to address the state explosion problem for model checking itineraries, we propose an approach called Model Generation Code. In this approach, instead of verifying the itinerary itself, a host actually checks the conservative models of a mobile agent. If a conservative model does not satisfy the host's access control policy, the mobile agent will provide refined models for further verification. Our preliminary results show that this is a practical and promising approach to ensure the secure execution of mobile agents.

源语言英语
主期刊名Proceedings - 2nd IEEE International Symposium on Dependable, Autonomic and Secure Computing, DASC 2006
177-184
页数8
DOI
出版状态已出版 - 2006
活动2nd IEEE International Symposium on Dependable, Autonomic and Secure Computing, DASC 2006 - Indianapolis, IN, 美国
期限: 29 9月 20061 10月 2006

出版系列

姓名Proceedings - 2nd IEEE International Symposium on Dependable, Autonomic and Secure Computing, DASC 2006

会议

会议2nd IEEE International Symposium on Dependable, Autonomic and Secure Computing, DASC 2006
国家/地区美国
Indianapolis, IN
时期29/09/061/10/06

学术指纹

探究 'Runtime security verification for itinerary-driven mobile agents' 的科研主题。它们共同构成独一无二的指纹。

引用此