%0 Journal Article
%T Attacks and Defenses in Automated Trust Negotiation
自动信任协商中的攻击与防范
%A LI Kai
%A LU Zheng-ding
%A LI Rui-xuan
%A LIU Bai-ling
%A
李开
%A 卢正鼎
%A 李瑞轩
%A 刘百灵
%J 计算机科学
%D 2010
%I
%X The purpose of Automated Trust Negotiation (ATN) is mainly to establish trust among different security domains. ATN is an approach to establish mutual trust between strangers wishing to share resources or conduct business by gradually requesting and disclosing access control policies and digital credentials. Special attacks can be initiated to ATN according to the characteristics of the way of trust establishment, which cannot be effectively tackled by the measures preventing normal network attacks. Therefore, it is essential to analyze all kinds of attacks existing in ATN. A comprehensive survey of research on attacks in ATN was presented based on the classification and introduction of different attacking manners and corresponding defenses,the shortcomings of the current related research were pointed out and the development trend was also discussed.
%K Automated trust negotiation
%K Attack
%K Defense
%K Sensitive information
自动信任协商
%K 攻击
%K 防范措施
%K 敏感信息
%U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=64A12D73428C8B8DBFB978D04DFEB3C1&aid=12BC384A35A2F28A49EE481E8CAFE933&yid=140ECF96957D60B2&vid=42425781F0B1C26E&iid=5D311CA918CA9A03&sid=5D71B28100102720&eid=4F2F18DD6F870C2C&journal_id=1002-137X&journal_name=计算机科学&referenced_num=0&reference_num=30