Context-based security management for multi-agent systems

R. Montanari, A. Toninelli, J. Bradshaw
{"title":"Context-based security management for multi-agent systems","authors":"R. Montanari, A. Toninelli, J. Bradshaw","doi":"10.1109/MASSUR.2005.1507050","DOIUrl":null,"url":null,"abstract":"Policies are being increasingly used for controlling the behavior of complex multi-agent systems. The use of policies allows administrators to specify both agent permissions and duties without changing source code or requiring the consent or cooperation of the agents being governed. However, policy-based control can encounter difficulties when applied to agents that act in pervasive environments characterized by frequent and unpredictable changes. In this case, policies cannot be all specified a priori to face any operative run time situation, but require continuous adjustments to allow agents to behave in a contextually appropriate manner. Current approaches to policy representation have been restrictive in many ways, as they typically follow a subject-centric model, which assigns agent permissions and obligations on the basis of agent role/identity information. However, in the new pervasive scenario the roles/identities of interacting agents may not be known a-priori and most important, may not be informative or sufficiently trustworthy. We claim that the design of policy-based agent systems for pervasive environments requires a paradigm shift from subject-centric to context-centric policy models. This paper discusses some issues concerning the specification and enforcement of context-driven policies and presents a novel context-based policy approach that considers context as a first-class principle to guide both policy specification and enforcement. In this perspective, \"context\" explicitly appears in the specification of security policies and context changes trigger the evaluation process of applicable agent permissions and obligations.","PeriodicalId":391808,"journal":{"name":"IEEE 2nd Symposium on Multi-Agent Security and Survivability, 2005.","volume":"51 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2005-09-12","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"25","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE 2nd Symposium on Multi-Agent Security and Survivability, 2005.","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/MASSUR.2005.1507050","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 25

Abstract

Policies are being increasingly used for controlling the behavior of complex multi-agent systems. The use of policies allows administrators to specify both agent permissions and duties without changing source code or requiring the consent or cooperation of the agents being governed. However, policy-based control can encounter difficulties when applied to agents that act in pervasive environments characterized by frequent and unpredictable changes. In this case, policies cannot be all specified a priori to face any operative run time situation, but require continuous adjustments to allow agents to behave in a contextually appropriate manner. Current approaches to policy representation have been restrictive in many ways, as they typically follow a subject-centric model, which assigns agent permissions and obligations on the basis of agent role/identity information. However, in the new pervasive scenario the roles/identities of interacting agents may not be known a-priori and most important, may not be informative or sufficiently trustworthy. We claim that the design of policy-based agent systems for pervasive environments requires a paradigm shift from subject-centric to context-centric policy models. This paper discusses some issues concerning the specification and enforcement of context-driven policies and presents a novel context-based policy approach that considers context as a first-class principle to guide both policy specification and enforcement. In this perspective, "context" explicitly appears in the specification of security policies and context changes trigger the evaluation process of applicable agent permissions and obligations.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
多代理系统的基于上下文的安全管理
策略越来越多地用于控制复杂的多智能体系统的行为。策略的使用允许管理员指定代理权限和职责,而无需更改源代码,也不需要被治理代理的同意或合作。但是,当将基于策略的控制应用于以频繁和不可预测的变化为特征的普遍环境中的代理时,可能会遇到困难。在这种情况下,不能预先指定所有策略以应对任何操作运行时情况,而是需要不断调整以允许代理以上下文适当的方式行事。当前的策略表示方法在许多方面都有局限性,因为它们通常遵循以主题为中心的模型,该模型根据代理角色/身份信息分配代理权限和义务。然而,在新的普遍场景中,交互代理的角色/身份可能不是先验的,最重要的是,可能没有信息或不够可信。我们声称,为普及环境设计基于策略的代理系统需要从以主题为中心的策略模型转变为以上下文为中心的策略模型。本文讨论了有关上下文驱动策略的规范和实施的一些问题,并提出了一种新的基于上下文的策略方法,该方法将上下文视为指导策略规范和实施的头等原则。从这个角度来看,“上下文”显式地出现在安全策略的规范中,上下文更改触发适用代理权限和义务的评估过程。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Implementing QoS-adaptation in coordination artifacts by enhancing Cougaar multi-agent middleware Configuring requirements-compliant multi-agent systems Context-based security management for multi-agent systems Approximation results for probabilistic survivability Using POMDP-based state estimation to enhance agent system survivability
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1