Smartcard Firewalls Revisited
نویسندگان
چکیده
Smartcards are being used as secure endpoints in computer transactions. Recently, the connectivity of smartcards has increased and future smartcards will be able to communicate over the TCP/IP protocol. In this work, we explore options for using a smartcard as an active node in a communication network rather than as an endpoint. We envision in particular a proxy firewall running on a smartcard and combining the best of both worlds: the smartcard as a secure environment, and the proxy firewall for securing the network. Facilitating the various security options smartcards offer, we show how to design a secure network firewall on a smartcard. We illustrate the usefulness of such a device in several scenarios. Life was simple before World War II. After that, we had systems. Rear Admiral Grace Murray Hopper
منابع مشابه
Protecting Services with Smartcard-Based Access Control: A Case
Technical University Berlin is in the process of issuing smartcards to employees and students and providing a wide range of campus-related services over the internet. Therefore an infrastructure supplying security services like user-authentication, secure connections and access control is necessary. A further goal is the reuse of existing applications and network technology to keep costs reason...
متن کاملFirewall Configuration Errors Revisited
Practically every corporation that is connected to the Internet uses firewalls as the first line of its cyber-defense. However, the protection that these firewalls provide is only as good as the policy they are configured to implement. The first quantitative evaluation of the quality of corporate firewall configurations appeared in 2004, based on Check Point FireWall-1 rule-sets. In general tha...
متن کاملSCFS: A UNIX Filesystem for Smartcards
Smartcard software developers su er from the lack of a standard communication framework between a workstation and a smartcard. To address this problem, we extended the UNIX lesystem to provide access to smartcard storage, which enables us to use les in a smartcard as though normal UNIX les, but with the additional security properties inherent to smartcards.
متن کاملRecoverable Persistent Memory for SmartCard
Smartcard is well adapted to store con dential data and to provide secure services in a mobile and distributed environment. But many cases of smartcard application failure can corrupt data in smartcard persistent memory. In this paper, we propose a recoverable persistent memory to maintain data consistency in a smartcard. Then, we adapt and compare two recovery algorithms used in Database Manag...
متن کاملCITI Technical Report 98-8 SCFS: A UNIX Filesystem for Smartcards
Smartcard software developers su er from the lack of a standard communication framework between a workstation and a smartcard. To address this problem, we extended the UNIX lesystem to provide access to smartcard storage, which enables us to use les in a smartcard as though normal UNIX les.
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2006