Architectural Issues of Web−Enabled Electronic Business phần 10

và nó cũng làm giảm khả năng rằng mỗi đại lý có thể truy cập thông tin cá nhân của các đại lý khác. Điều này có nghĩa là thông tin cá nhân là chỉ có bộ điều khiển của thị trường ảo và bảo vệ chống lại sự truy cập bất hợp pháp một cách cẩn thận. | Limitations of Our Infrastructure Difficulty in Identifying a Malicious Host The current implementation does not have a way of identifying the host that is causing the attacks on the agent. The agent owner can only detect that certain information has been tampered but he does not know exactly which host caused the disparity. Without this information the malicious host will never be identified in the network and the agent owner would not be able to warn the other agents in the community of the malicious host. Conclusions and Future Work With the development of the Internet and software agent technologies agent-based e-commerce systems are being developed by many academic and industrial organizations. However the advantages of employing mobile agents can be manifested only if there is a secure and robust system in place. In this chapter the design and implementation of agent authentication and authorization are elaborated. By combining the features of the Java security environment and the Java Cryptographic Extensions a secure and robust infrastructure is built. PKI is the main technology used in the authentication module. In developing this module care was taken to protect the public and private keys generated. To verify the integrity of the agent digital signature is used. The receiving party would use the public keys of the relevant parties to verify that all the information on the agent is intact. In the authorization module the agent is checked regarding its trustworthiness and a suitable user-defined security policy will be recommended based on the level of authentication the agent has passed. This policy controls the amount of resources to be granted to the agent. The agent will be run under the security manager and the prescribed security policy. If it ever tried to access beyond what the security policy allows a security exception will be thrown and the execution will fail. Overall the implementation of the prototype has provided a basic infrastructure to .

Không thể tạo bản xem trước, hãy bấm tải xuống
TỪ KHÓA LIÊN QUAN
TÀI LIỆU MỚI ĐĂNG
5    71    2    20-05-2024
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.