Secure Encapsulation of Non-Secure Middleware

Fangzhou Zhang, Yingying Niu · 2008

Unceasingly develop and the thorough development along with the software system, the use of middleware become more and more, they mutually affect by the complex way. These middle wares, because of the complex of the origin, are not extremely credible. So, before using these middlewares, we must understand the security feature of them, for instance, the secret data cannot be leaked in the network. But, it is very difficult to confirm that these middlewares can have good security feature. The paper designs the encapsulations, which let these middlewares run under secure environment, and it provides the control of good granularity among the middle wares, the middleware and other system resources. The main part of this paper is to research the expression methods of the encapsulations, through these methods we give the security and verify it. This paper uses box-pi calculus to describe several kinds of encapsulations, and discuss the security which each kind of encapsulation could guarantee.

Read the paper · More papers on PaperTik