48
Views
3
CrossRef citations to date
0
Altmetric
Original Articles

Path-history-based access control for mobile agents

&
Pages 215-225 | Received 06 Dec 2004, Accepted 01 Jul 2005, Published online: 03 Apr 2009
 

Abstract

The mobility of agents is a distinct characteristic of mobile agent systems. Meanwhile, it has introduced new security issues. In this paper, we analyze the impact of an agent's path history (PH), as a resulting attribution of its mobility, on the access control decisions against it. The path could be an authorization basis. At the same time, the validity of the statically defined trust relationship with mobile agents is to be re-evaluated respecting where they have been, in which case the path information serves as a debasement of agents' trust degree and, therefore, weakens their privileges. To build a path-history-based access control model for the mobile agent application environment, path pattern and host patch are proposed here as conceptional components to declare the dynamic trust relationship with the migrating agents in a flexible and fine-grained manner. An integration of these two components with the well-known RBAC model is presented formally as a phRBAC model. Several application scenarios of phRBAC show its ability to enforce the special security policy in mobile agent environment. Some issues in implementing such a model are also discussed.

Acknowledgements

This work is supported by NNSFC (60233010, 60273034, 60403014), 973 Program of China (2002CB312002), 863 Program of China (2005AA113160), NSFC of Jiangsu Province (BK2002203, BK2002409).

Notes

†Email: [email protected]

Additional information

Notes on contributors

Jian Lu

† †Email: [email protected]

Reprints and Corporate Permissions

Please note: Selecting permissions does not provide access to the full text of the article, please see our help page How do I view content?

To request a reprint or corporate permissions for this article, please click on the relevant link below:

Academic Permissions

Please note: Selecting permissions does not provide access to the full text of the article, please see our help page How do I view content?

Obtain permissions instantly via Rightslink by clicking on the button below:

If you are unable to obtain permissions via Rightslink, please complete and submit this Permissions form. For more information, please visit our Permissions help page.