Seamless object authentication in different security policy domains

Satoru Tezuka, R. Sasaki, M. Kataoka · 2005

In the trading of intangible goods, there co-exist, from the security policy point of view, several different domains, such as CORBA and Java. In such environments, mobile objects such as Applets, can move freely between domains, which contributes greatly to the dynamic evolution of the distributed computer system. However, there arises a new security problem: there is no way for the mobile objects to move appropriately and seamlessly between the different security policy domains, according to the required rights. This cannot be prevented by the present security functions that are provided in such an environment and in each of the mobile objects. We therefore propose Seamless Object Authentication (SOA), which is: (1) a function which clearly defines the required rights to the mobile object, and (2) a function for the domains to check the mobile objects when they move between domains. We believe that this will lead to the dynamic evolution of the distributed computer system between different security policy domains and provide the basis of a Security Centric System.

Read the paper · More papers on PaperTik