{"title":"A Formal Model of Trust and Security for Task-Oriented Information System","authors":"Li Wei-peng, Hu Ju","doi":"10.1109/ISECS.2008.191","DOIUrl":null,"url":null,"abstract":"Trust and security are two important concepts in information security, but the difference between them is fuzzy. This paper proposes a new formal definition of trust for task-oriented information system. The new definition includes detailed information about trust itself. It defines trust of a component as the relationship of the expected behaviors and the trusted prerequisites, and puts forward a formal directed-graph model to express it. With the directed-graph model, it expands trust chain to trust tree and trust forest, use them to give a formal description of trust and security of information system, it also discusses trusted module, and brings forward a multi-layer trusted structure to design trusted module.","PeriodicalId":144075,"journal":{"name":"2008 International Symposium on Electronic Commerce and Security","volume":"74 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-08-03","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2008 International Symposium on Electronic Commerce and Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISECS.2008.191","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
Trust and security are two important concepts in information security, but the difference between them is fuzzy. This paper proposes a new formal definition of trust for task-oriented information system. The new definition includes detailed information about trust itself. It defines trust of a component as the relationship of the expected behaviors and the trusted prerequisites, and puts forward a formal directed-graph model to express it. With the directed-graph model, it expands trust chain to trust tree and trust forest, use them to give a formal description of trust and security of information system, it also discusses trusted module, and brings forward a multi-layer trusted structure to design trusted module.