Towards Practical Automated Trust Negotiation

  • Authors:
  • N. Li;W. Winsborough

  • Affiliations:
  • -;-

  • Venue:
  • POLICY '02 Proceedings of the 3rd International Workshop on Policies for Distributed Systems and Networks (POLICY'02)
  • Year:
  • 2002

Quantified Score

Hi-index 0.00

Visualization

Abstract

Exchange of attribute credentials is a means to establishmutual trust between strangers that wish to share resourcesor conduct business transactions. Automated Trust Negotiation(ATN) is an approach to regulate the exchange of sensitivecredentials by using access control policies. ExistingATN work makes unrealistic simplifying assumptions aboutcredential-representation languages and credential storage.Moreover, while existing work protects the transmission ofcredentials, it fails to hide the contents of credentials, thusproviding uncontrolled access to potentially sensitive attributes.To protect information about sensitive attributes,we introduce the notion of attribute acknowledgment policies(Ack policies). We then introduce the trust target graph(TTG) protocol, which supports a more realistic credentiallanguage, Ack policies, and distributed storage of credentials.