
一个软件服务协同中的信任管理框架设计 被引量:3

Design of a Trust Management Framework in Software Service Coordination
摘要 1引言 目前,以Web服务为代表的软件服务及软件服务协同已成为一种新兴的Web应用形态. Internet-based Web application systems are gradually built as software service coordination systems. In an openi dynamic and collaborative application environment, traditional methods assumed with closeness, centralization and independence are not able to cope with these security problems efficiently. Trust management is a new method for dealing with security issues of open, distributed network application system. However, the traditional policy-based trust management systems have some shortcomings, i. e. complex in policy making, unable to deal with negative security credentials, etc. So, we design a trust management framework in combination with subjective trust model for software service coordination and security decision in Internet environment. This trust management framework has characteristics of operability, reasonability, and flexibility in policy setting.
出处 《计算机科学》 CSCD 北大核心 2003年第9期152-154,161,共4页 Computer Science
基金 国家自然科学基金(No.60273034) 863项目(No.2001AA11310 No.2002AA116010) 江苏省自然科学基金 高技术项目(BG2001012 BK2002203 BK2002409)
关键词 软件服务协同系统 信任管理 设计 事件概率 INTERNET Trust management, Trust valuation
  • 相关文献


  • 1Herrmann P, Krumm H. Trust-adapted enforcement of security policies in distributed component-structured applications. In: Proc of the 6^th IEEE Symposium on Computers and Communications. Tunesia: IEEE Computer Society Press, 2001. 2-8.
  • 2Khare P, Rifkin A. Trust Mangement on World Wide Web. World Wide Web Journal, 1997, 2(3): 77-112.
  • 3Bhargava B, Zhong Y. Authorization Based on Evidence and Trust: [CERIAS Tech Report]. 2002.
  • 4Blaze M, Feigenbaum J, Lacy J. Decentralized Trust Management. In: Proc 17^th Symposium on Security and Privacy. Oakland, IEEE, 1996. 164-173.
  • 5Blaze M ,Feigenbaum J ,Ioannidis J ,Keromytis A D. The KeyNote Trust Management System Version 2. Internet RFC 2704, Sep.1999.
  • 6Chu Y-H, Feigenbaum J, LaMacchia B, Resnick P, Strauss M. REFEREE: Trust Management for Web Applications. World Wide Web Journal, 1997, 2(2): 127-139.
  • 7Beth T,Borcherding M ,Klein B. Valuation of Trust in Open NetWork. In: Proc European Symposium On Research in Security (ESORICS). Brighton: Springer-Verlag, 1994. 3- 18.
  • 8JΦsang A. A model for trust in security systems. In : Proc of the Second Nordic Workshop on Secure Computer Systems. 1997.
  • 9Gambetta D. Can We Trust Trust?. In: Trust: Making and Breaking Cooperative Relations. Basil Blackwell, Oxford, 1990.213-237.
  • 10Blaze M, Feigenbaum J, Ioannidis J, Keromytis A. The Role of Trust Management in Distributed Systems Security. In: Secure Internet Programming: Issues for mobile and distributed objects. Berlin: Springer-Verlag, 1999. 185-210.


  • 1Cisco Secure Policy Manager. http://www. cisco. com/warp/public/cc/pd/sqsw/sqppmn/index. shtml
  • 2Tivoli http://www-306. ibm. com/software/tivoli/
  • 3Blaze M, Feigenbaum J, Lacy J. Decentralized Trust Management. In: Proc. 17th Symposium on Security and Privacy. Oakland: IEEE, 1996. 164~173
  • 4Blaze M, Feigenbaum J,Strauss M. Compliance Checking in the PolicyMaker Trust Management System. Financial Cryptography1998. 254~274
  • 5Blaze M, Ioannidis J, Keromytis A D. Experience with the KeyNote Trust Management System: Applications and Future Directions. iTrust 2003. 284~300
  • 6Blaze M, Feigenbaum J, Keromytis A D. KeyNote: Trust Management for Public-Key Infrastructures. In: Christianson B,Crispo B, William,S, et al. eds. Cambridge 1998 Security Protocols Intl. Workshop. Berlin: Springer-Verglag, 1999. 59~63
  • 7Blaze M, Feigenbaum J, Ioannidis J, Keromytis A D. The KeyNote Trust Management System Version 2. Internet RFC 2704. http://www. faqs. org/rfcs/frc2704. html, Sep. 1999
  • 8Chu Y-, Feigenbaum J, LaMacchia B, Resnick P, Strauss M.REFEREE: Trust Management for Web Applications. World Wide Web Journal, 1997, 2(2) :127~139
  • 9IBM. IBM Trust Establishment Policy Language. http://www.hrl. il. ibm. com/TrustEstablishment/PolicyLanguage. asp
  • 10Grandison T, Sloman M. A Survey of Trust in Internet Applications. IEEE Communications Surveys and Tutorials, 2000,4(4):2~16










使用帮助 返回顶部