Tapido: Trust and Authorization Via Provenance and Integrity in Distributed Objects (Extended Abstract)
نویسندگان
چکیده
Existing web services and mashups exemplify the need for flexible construction of distributed applications. How to do so securely remains a topic of current research. We present TAPIDO, a programming model to address Trust and Authorization concerns via Provenance and Integrity in systems of Distributed Objects. Creation of TAPIDO objects requires (static) authorization checks and their communication provides fine-grain control of their embedded authorization effects. TAPIDO programs constrain such delegation of rights by using provenance information. A type-and-effect system with effect polymorphism provides static support for the programmer to reason about security policies. We illustrate the programming model and static analysis with example programs and policies.
منابع مشابه
Data Provenance in the Internet of Things
Data Provenance and the Internet of Things (IoT) are two key subjects which have to be brought together in the near future. Almost every object will be able to communicate with individuals and other objects using the abilities of embedded sensors and actuators. As a result the IoT implicates a huge amount of data whose processing necessitates a certain level of trust which can only be reached w...
متن کاملE-notebook Middleware for Accountability and Reputation Based Trust in Distributed Data Sharing Communities
This paper presents the design of a new middleware which provides support for trust and accountability in distributed data sharing communities. One application is in the context of scientific collaborations. Multiple researchers share individually collected data, who in turn create new data sets by performing transformations on existing shared data sets. In data sharing communities building tru...
متن کاملCERIAS Tech Report 2004-18 E-NOTEBOOK MIDDLEWARE FOR ACCOUNTABILITY AND REPUTATION BASED TRUST IN DISTRIBUTED DATA SHARING COMMUNITIES
This paper presents the design of a new middleware which provides support for trust and accountability in distributed data sharing communities. One application is in the context of scientific collaborations. Multiple researchers share individually collected data, who in turn create new data sets by performing transformations on existing shared data sets. In data sharing communities building tru...
متن کاملAn Authorization Framework for Database Systems
Today, data plays an essential role in all levels of human life, from personal cell phones to medical, educational, military and government agencies. In such circumstances, the rate of cyber-attacks is also increasing. According to official reports, data breaches exposed 4.1 billion records in the first half of 2019. An information system consists of several components, which one of the most im...
متن کاملProvenance security guarantee from origin up to now in the e-Science environment
The e-Science environment provides science researchers with an online laboratory. Objects, including research data and related information, are transferred and shared in electronic form easily in an e-Science environment. Provenance, as a complete record of the changes applied to an object, provides a basis to trust an object. At this point, this paper proposes the ‘‘Provenance Security from Or...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2008