Enforcing History-Based Security Policies in Mobile Agent Systems

  • Authors:
  • Pedro Dias;Carlos Ribeiro;Paulo Ferreira

  • Affiliations:
  • -;-;-

  • Venue:
  • POLICY '03 Proceedings of the 4th IEEE International Workshop on Policies for Distributed Systems and Networks
  • Year:
  • 2003

Quantified Score

Hi-index 0.01

Visualization

Abstract

The mobile agent paradigm used in modern distributedsystems has revealed some new forms of common securitythreats, such as abusive resource consumption orillegitimate information flow between different and non-cooperativeentities. This problem is aggravated when anagent's host doesn't know anything about the agent's pastactivities, visited hosts and interactions with other agents.Thus, robust and efficient authorization platforms shouldbe considered in order to avoid undesired actions frommalicious agents.We present an authorization platform designed for amobile agent system, MobileTrans, which supports thedefinition and enforcement of history-based securitypolicies, allowing hosts to decide on the authorization ofan agent's action upon its past behaviour.