Skip to main content

Building Trust Chains between CORBA Objects

  • Conference paper
Book cover Dependable Computing (LADC 2003)

Part of the book series: Lecture Notes in Computer Science ((LNCS,volume 2847))

Included in the following conference series:

  • 351 Accesses

Abstract

This work presents an authentication and authorization model that results from the integration of the SPKI/SDSI infrastructure with CORBAsec. The paper presents the main facilities provided by the proposed model, showing the advantages of using the SPKI/SDSI infrastructure. CORBA provides to the model the advantages of interoperable distributed objects in heterogeneous environments. The idea defended in this paper is the better suitability of trust chains, as the SPKI/SDSI, with the characteristics of the world-wide network.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. Rivest, R.L., Lampson, B.: SDSI – A simple distributed security infrastructure. Presented at CRYPTO 1996 Rumpsession (1996), http://citeseer.nj.nec.com/rivest96sdsi.html

  2. Ellison, C.M., Frantz, B., Lampson, B., Rivest, R., Thomas, B.M., Ylonen, T.: SPKI Certificate Theory. Internet Engineering Task Force RFC 2693 (1999)

    Google Scholar 

  3. Li, N.: Local Names in SPKI/SDSI. In: Proceedings of The 13th Computer Security Foundations Workshop, pp. 2–15. IEEE Computer Society Press, Los Alamitos (2000)

    Google Scholar 

  4. OMG: Object Management Group – Security Service v1.7. OMGDocument 01-03-08 (2001)

    Google Scholar 

  5. Westphall, C.M.: Um esquema de autorização para segurança em sistemas distribuídos de larga escala. PhD thesis, Federal University of Santa Catarina – Brazil (2000)

    Google Scholar 

  6. Gollmann, D.: Computer Security. John Wiley & Sons, Chichester (1999)

    Google Scholar 

  7. Hartman, B., Flinn, D.J., Beznosov, K.: Enterprise Security with EJB and CORBA. OMG Press, John Wiley & Sons (2001)

    Google Scholar 

  8. Santin, A., Fraga, J., Mello, E., Siqueira, F.: Um modelo de autorização e autenticação baseado em redes de confiança para sistemas distribuídos de larga escala. In: Anais SSI 2002, São José dos Campos, SP – Brazil, ITA, SSI, pp. 101–110 (2002)

    Google Scholar 

  9. Santin, A., Fraga, J., Mello, E., Siqueira, F.: Teias de Federações como extensões ao modelo de autenticação autorização SDSI/SPKI. In: Anais XXI Simpósio Brasileiro de Redes de Computadores, Natal, RN – Brazil, SBRC, 553–568 (2003)

    Google Scholar 

  10. Nikander, P., Viljanen, L.: Storing and Retrieving Internet Certificates. In: Proceedings of the Third Nordic Workshop on Secure IT Systems (1998)

    Google Scholar 

  11. Morcos, A.: A Java implementation of Simple Distributed Security Infrastructure. Master’s thesis, MIT (1998)

    Google Scholar 

  12. IONA Technologies Inc.: ORBacus User Guide, Version 3.3.4 (2001)

    Google Scholar 

  13. Adiron, L.L.C.: ORBAsec SL2 User Guide, Version 2.1.4 (2000)

    Google Scholar 

  14. Institute for Applied Information Processing and Communications (IAIK): iSaSiLk 3 – Reference Manual, Version 3 (2000)

    Google Scholar 

  15. Rivest, R.L.: SEXP (S-expressions). Internet Engineering Task Force – Internet Draft (1997), http://theory.lcs.mit.edu/rivest/sexp.html

  16. Orri, X., Mas, J.M.: SPKI-XML Certificate Structure. Internet Engineering Task Force – Internet Draft Visited in 04/02/2003 (2001), http://xml.coverpages.org/ni2001-12-18-a.html

  17. Clarke, D.E.: SPKI/SDSI HTTP Server / Certificate Chain Discovery in SPKI/SDSI. PhD thesis, MIT (2001)

    Google Scholar 

  18. Lampinen, T.: Using SPKI certificates for authorization in CORBA based distributed objectoriented systems. In: Proceedings of the 4th Nordic Workshop on Secure IT Systems (NordSec 1999), Kista, Sweden, pp. 61–81 (1999)

    Google Scholar 

  19. Eronen, P., Nikander, P.: Decentralized Jini Security. In: Network and Distributed System Security Symposium – (NDSS 2001), San Diego, California (2001)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2003 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Ribeiro de Mello, E., da Silva Fraga, J., Santin, A.O., Siqueira, F. (2003). Building Trust Chains between CORBA Objects. In: de Lemos, R., Weber, T.S., Camargo, J.B. (eds) Dependable Computing. LADC 2003. Lecture Notes in Computer Science, vol 2847. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-540-45214-0_10

Download citation

  • DOI: https://doi.org/10.1007/978-3-540-45214-0_10

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-20224-0

  • Online ISBN: 978-3-540-45214-0

  • eBook Packages: Springer Book Archive

Publish with us

Policies and ethics