Retrofitting Communication Security into a Publish/Subscribe Middleware Platform
نویسندگان
چکیده
The Medical Device Coordination Framework (MDCF) is an open source middleware package for interoperable medical devices, designed to support the emerging Integrated Clinical Environment (ICE) interoperability standard. As in any open system, medical devices connected to the MDCF or other ICE-like network should be authenticated to defend the system against malicious, dangerous, or otherwise unauthorized devices. In this paper, we describe the creation and integration of a pluggable, flexible authentication system into the almost 18,000 lines of MDCF codebase, and evaluate the performance of proof-of-concept device authentication providers. The framework is sufficiently expressive to support arbitrary modules implementing arbitrary authentication protocols using arbitrarily many rounds of communication. In contrast with the expected costs in securing nontrivial systems, often involving major architectural changes and significant degradation of system performance, our solution requires the addition of just over 1,000 lines of code (∼ 5.56%), and incurs performance overhead only from the authentication protocols themselves, rather than from the framework.
منابع مشابه
Modeling RADAR integration using publish- subscribe based middleware
Radars are extremely useful in homeland security for border management and coastal surveillance systems. Due to the terrain, coastal and vegetation conditions a network of short ranged radars are advantageous over single long range radar. Integrating radars in terms of data acquisition and display remains challenging considering the factors like synchronicity, network failures, and channel band...
متن کاملContent-Based Networking: A New Communication Infrastructure
We argue that the needs of many classes of modern applications, especially those targeted at mobile or wireless computing, demand the services of content-based publish/subscribe middleware, and that this middleware in turn demands a new kind of communication infrastructure for its proper implementation. We refer to this new communication infrastructure as content-based networking. The service m...
متن کاملA Publish/Subscribe CORBA Persistent State Service Prototype
An important class of information dissemination applications requires 1:n communication and access to persistent datastores. CORBA’s new Persistent State Service combined with messaging capabilities offer the possibility of efficiently realizing information brokers between data sources and CORBA clients. In this paper we present a prototype implementation of the PSS that exploits the reliable m...
متن کاملTowards an Access Control Mechanism for Wide-Area Publish/Subscribe Systems
The publish/subscribe communication model is increasingly considered for implementing middleware infrastructures for widely distributed applications. Scalability issues and routing algorithms of such systems have recently been the focus of intensive research. So far little attention has been given to security and management issues. In current publish/subscribe systems, malicious publishers can ...
متن کاملAchieving Scalability and Security in Publish-Subscribe Web Services
Scalability in Internet-scale distributed systems can be achieved through the publish-subscribe communication paradigm. In publish-subscribe systems, interacting parties communicate asynchronously, possibly connected at different times and possibly without knowledge of each other’s identity. Though this decoupling promotes scalability, it presents significant challenges to a security model. Sec...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014