Sie befinden Sich nicht im Netzwerk der Universität Paderborn. Der Zugriff auf elektronische Ressourcen ist gegebenenfalls nur via VPN oder Shibboleth (DFN-AAI) möglich. mehr Informationen...
Ergebnis 21 von 316
Conference on Computer and Communications Security: Proceedings of the 2007 ACM workshop on Computer security architecture; 02-02 Nov. 2007, 2007, p.54-62
2007

Details

Autor(en) / Beteiligte
Titel
Improving multi-tier security using redundant authentication
Ist Teil von
  • Conference on Computer and Communications Security: Proceedings of the 2007 ACM workshop on Computer security architecture; 02-02 Nov. 2007, 2007, p.54-62
Ort / Verlag
ACM
Erscheinungsjahr
2007
Link zum Volltext
Quelle
ACM
Beschreibungen/Notizen
  • Multi-tier web server systems are used in many important contexts and their security is a major cause of concern. Such systems can exploit strategies like least privilege to make lower tiers more secure in the presence of compromised higher tiers. In this paper, we investigate an extension of this technique in which higher tiers are required to provide evidence of the authentication of principals when they make requests of lower tiers. This concept, which we call redundant authentication , enables lower tiers to provide security guarantees that improve significantly over current least privilege strategies. We validate this technique by applying it to a practical Building Automation System (BAS) application, where we explore the use of redundant authentication in conjunction with an authentication proxy to enable interoperation with existing enterprise authentication services.
Sprache
Englisch
Identifikatoren
ISBN: 9781595938909, 1595938907
DOI: 10.1145/1314466.1314475
Titel-ID: cdi_proquest_miscellaneous_31296276

Weiterführende Literatur

Empfehlungen zum selben Thema automatisch vorgeschlagen von bX