{"title":"A Framework for Dependable Trust Negotiation in Open Environments","authors":"N. Dragoni, A. Saidane","doi":"10.1109/EASE.2008.16","DOIUrl":null,"url":null,"abstract":"Automated Trust Negotiation (TN) is a promising approach to allow strangers to access sensitive data and services in open environments, such as the Web. Although the amount of literature on TN is growing, two key issues have still to be addressed. The first one concerns a typical feature of real-life negotiations: we are usually willing to trade the disclosure of personal attributes in exchange for additional services and only in a particular order (according to our preferences). The second issue concerns dependability. By their nature TN systems are used in unreliable open contexts where it is important not only to protect negotiations against malicious attack, but also against accidental failures.In this paper we address the foregoing issues proposing a novel framework for dependable TN where services, needed credentials, and behavioral constraints on the disclosure of privileges are bundled together. The framework also supports clients and servers that have a hierarchy of preferences among the different bundles.","PeriodicalId":383637,"journal":{"name":"Fifth IEEE Workshop on Engineering of Autonomic and Autonomous Systems (ease 2008)","volume":"74 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-03-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Fifth IEEE Workshop on Engineering of Autonomic and Autonomous Systems (ease 2008)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/EASE.2008.16","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
Automated Trust Negotiation (TN) is a promising approach to allow strangers to access sensitive data and services in open environments, such as the Web. Although the amount of literature on TN is growing, two key issues have still to be addressed. The first one concerns a typical feature of real-life negotiations: we are usually willing to trade the disclosure of personal attributes in exchange for additional services and only in a particular order (according to our preferences). The second issue concerns dependability. By their nature TN systems are used in unreliable open contexts where it is important not only to protect negotiations against malicious attack, but also against accidental failures.In this paper we address the foregoing issues proposing a novel framework for dependable TN where services, needed credentials, and behavioral constraints on the disclosure of privileges are bundled together. The framework also supports clients and servers that have a hierarchy of preferences among the different bundles.