Tapido: Trust and Authorization Via Provenance and Integrity in Distributed Objects (Extended Abstract)

نویسندگان

  • Andrew Cirillo
  • Radha Jagadeesan
  • Corin Pitcher
  • James Riely
چکیده

Existing web services and mashups exemplify the need for flexible construction of distributed applications. How to do so securely remains a topic of current research. We present TAPIDO, a programming model to address Trust and Authorization concerns via Provenance and Integrity in systems of Distributed Objects. Creation of TAPIDO objects requires (static) authorization checks and their communication provides fine-grain control of their embedded authorization effects. TAPIDO programs constrain such delegation of rights by using provenance information. A type-and-effect system with effect polymorphism provides static support for the programmer to reason about security policies. We illustrate the programming model and static analysis with example programs and policies.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Data Provenance in the Internet of Things

Data Provenance and the Internet of Things (IoT) are two key subjects which have to be brought together in the near future. Almost every object will be able to communicate with individuals and other objects using the abilities of embedded sensors and actuators. As a result the IoT implicates a huge amount of data whose processing necessitates a certain level of trust which can only be reached w...

متن کامل

E-notebook Middleware for Accountability and Reputation Based Trust in Distributed Data Sharing Communities

This paper presents the design of a new middleware which provides support for trust and accountability in distributed data sharing communities. One application is in the context of scientific collaborations. Multiple researchers share individually collected data, who in turn create new data sets by performing transformations on existing shared data sets. In data sharing communities building tru...

متن کامل

CERIAS Tech Report 2004-18 E-NOTEBOOK MIDDLEWARE FOR ACCOUNTABILITY AND REPUTATION BASED TRUST IN DISTRIBUTED DATA SHARING COMMUNITIES

This paper presents the design of a new middleware which provides support for trust and accountability in distributed data sharing communities. One application is in the context of scientific collaborations. Multiple researchers share individually collected data, who in turn create new data sets by performing transformations on existing shared data sets. In data sharing communities building tru...

متن کامل

An Authorization Framework for Database Systems

Today, data plays an essential role in all levels of human life, from personal cell phones to medical, educational, military and government agencies. In such circumstances, the rate of cyber-attacks is also increasing. According to official reports, data breaches exposed 4.1 billion records in the first half of 2019. An information system consists of several components, which one of the most im...

متن کامل

Provenance security guarantee from origin up to now in the e-Science environment

The e-Science environment provides science researchers with an online laboratory. Objects, including research data and related information, are transferred and shared in electronic form easily in an e-Science environment. Provenance, as a complete record of the changes applied to an object, provides a basis to trust an object. At this point, this paper proposes the ‘‘Provenance Security from Or...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2008