期刊文献+

一种新的移动Agent安全体系设计方法

A New Design Method of Mobile Agent Security Architecture
下载PDF
导出
摘要 针对现有移动Agent安全系统在大规模开放式网络应用中存在的问题,提出了以Agent为本构建移动A gent安全体系的一种新方法,设计了具体的实施方案:Agent注册和Club服务机制.前者引入Agent注册处对Agent代码进行事前验证;后者引入Club服务器为用户提供Agent信息咨询服务.这种方案使移动Agent运行环境可以在保证Agent不对系统造成损害的同时,对特定Agent本身的资源需求进行授权.文中还给出了安全体系的结构和功能,并开发了遵循这一设计方案的原型系统Roamer3.0,说明了该方法的可行性和有效性均优于传统系统. According to the difficulties which are faced when existing mobile agent security systems are carried out in large-scale open networks, a new method of structuring mobile agent security architecture with agents as root is put forward and the concrete scheme-Agent Register and Club Service mechanism is designed. The former introduces Agent Registry to validate the codes of agents in advance and the latter introduces Club Server to provide users agents information consulting service. With such scheme mobile (agent) runtime environment can determine the permissions of an agent according to the requests of the agent at the same time it is sure the agent is not harmful to the system. A framework of the security architecture is given and the functions of the components are explained. And an prototypical system based on the scheme-Roamer 3.0 is developed and it indicates that this method is superior to traditional systems on feasibility and effectivity.
作者 郝曼 曹阳
出处 《武汉大学学报(理学版)》 CAS CSCD 北大核心 2003年第5期621-624,共4页 Journal of Wuhan University:Natural Science Edition
基金 国家自然科学基金资助项目(69983005)
关键词 移动AGENT 安全体系 设计方法 Agent注册 Club服务 网络安全 mobile Agent security architecture with Agents as Root, Agent register club service
  • 相关文献

参考文献1

二级参考文献12

  • 1[1]ISO/IEC 9594-8/ITU-T Recommendation X.509.Information Tech-nology-Open Systems Interconneetion-The Directory:Authentication Framework.ITU,1997
  • 2[2]W Yeong,T Howes,S Kille.Lightweight Directory Access Protocol. RFC 1777,1995.3
  • 3[3]M Wahl,T Howes,S Kille.Lightweight Directory Access Protocol. RFC 2251,1997.12
  • 4[4]S Kent.Privacy Enhancement for Internet Electronic Mail:Part 2: Certificate_Based Key Management.RFC 1422,1993.2
  • 5[5]Internet Public Key Infrastructure-X.509 Certificate and CRL Profile.Section 6:PKIX Working Group Internet Draft
  • 6[6]M Myers,R Ankey,A Malpani,et al.X.509 Internet Public Key Infrastructure Online Certificate Status Protocol-OCSP.IETF X.509 PKIX Working Group,1998.9(draft)
  • 7[7]R Housley,W Ford,W Polk,et al.Internet X.509 Public Key Infrastrocture Certificate and CRL Profile.RFC 2459,1999.1
  • 8[8]S Boeyen,T Hocws,P Richard.Internet X.509 Public Key Infrastructure LDAPV2 Schema.RFC 2587,1999.6
  • 9[9]C Adams,S Farrell.Internet X.509 Public Key Infrastructure Certificate Management Protocols.RFC 2510,1999.3
  • 10[10]R Housley.Internet X.509 Public Key Infrastructure Operational Protocols:FTP and HTTP.RFC 2585,1999.5

共引文献19

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部