| ATM: an automatic trust monitoring algorithm for service software |
| Full text |
Pdf
(332 KB)
|
Source
|
Symposium on Applied Computing
archive
Proceedings of the 2009 ACM symposium on Applied Computing
table of contents
Honolulu, Hawaii
SESSION: Dependable and adaptive distributed systems track
table of contents
Pages 1040-1044
Year of Publication: 2009
ISBN:978-1-60558-166-8
|
|
Authors
|
|
| Sponsor |
|
| Publisher |
|
| Bibliometrics |
Downloads (6 Weeks): 15, Downloads (12 Months): 62, Citation Count: 0
|
|
|
ABSTRACT
While providing services to stakeholders, service software can be exploited by potentially untrustworthy users. Given that, it is necessary to monitor the trust relationships between service providers and requestors for potential vulnerabilities they may invite to the total system. In this paper, we propose an Automatic Trust Monitoring algorithm called ATM based on the specification of trust relationships in trust scenarios and the quantification of the relationships through trust calculation schemes. Trust rules are generated from the trust scenarios ready to be deployed at run-time. A service requestor is penalized for the violation of a trust rule and rewarded for no such violation. This analysis facilitates the quantification of the trustworthiness of service requestors and the accuracy of the recommendations from other service providers that can be used to make dynamic decisions on the corresponding requestors. The monitor is implemented in a prototype file sharing grid and evaluated using file sharing applications.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
|
| |
2
|
|
| |
3
|
Gambetta, D. Can we trust trust?, in Trust: Making and Breaking Cooperative Relations, Chapter 13, 1988. University of Oxford: 213--237.
|
 |
4
|
|
| |
5
|
|
 |
6
|
|
| |
7
|
|
 |
8
|
|
 |
9
|
|
| |
10
|
T. Ryutov , Li Zhou , C. Neuman , N. Foukia , T. Leithead , K. E. Seamons, Adaptive Trust Negotiation and Access Control for Grids, Proceedings of the 6th IEEE/ACM International Workshop on Grid Computing, p.55-62, November 13-14, 2005
[doi> 10.1109/GRID.2005.1542724]
|
 |
11
|
|
| |
12
|
|
 |
13
|
Nathan Dimmock , András Belokosztolszki , David Eyers , Jean Bacon , Ken Moody, Using trust and risk in role-based access control policies, Proceedings of the ninth ACM symposium on Access control models and technologies, June 02-04, 2004, Yorktown Heights, New York, USA
[doi> 10.1145/990036.990062]
|
| |
14
|
Dimmock, N., Bacon, J., Ingram, D., Moody, K. Risk models for trust-based access control (TBAC), in Proc of the 3rd Annual Conf on Trust Management (LNCS v3477), 2005. Springer: 364--371.
|
 |
15
|
|
| |
16
|
|
| |
17
|
Bellifemine, F., Caire, G., Poggi, A., Rimassa, G. Jade: A white paper, in EXP in Search of Innovation, 3(3); 2003.
|
| |
18
|
Snyder, C., Southwell, M. Preventing SQL injection, in Pro PHP Security, SpringerLink: 249--261.
|
|