Smart encryption channels for securing virtual machine-based networked applications
We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expecte...
Gespeichert in:
Veröffentlicht in: | Security and communication networks 2009-11, Vol.2 (6), p.507-518 |
---|---|
Hauptverfasser: | , , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | 518 |
---|---|
container_issue | 6 |
container_start_page | 507 |
container_title | Security and communication networks |
container_volume | 2 |
creator | Itani, Wassim Kayssi, Ayman Chehab, Ali |
description | We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley & Sons, Ltd. |
doi_str_mv | 10.1002/sec.90 |
format | Article |
fullrecord | <record><control><sourceid>proquest_cross</sourceid><recordid>TN_cdi_proquest_miscellaneous_901658534</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>896202473</sourcerecordid><originalsourceid>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</originalsourceid><addsrcrecordid>eNqF0EtLw0AUBeAgCtaqvyErxUXqvDKPpZRahaKLVgQ3w2RyY8emSZxJrP33plbciYvLPYuPszhRdI7RCCNErgPYkUIH0QArqhKECTn8zZgdRychvCHEMRNsEM3na-PbGCrrt03r6iq2S1NVUIa4qH3cd3XeVa_xh_NtZ8p4bezSVZBkJkAeV9Buar_qk2ma0lmzawin0VFhygBnP38YPd1OFuO7ZPY4vR_fzBJLU4USmdkCScUIyTKBJZcFtwo4VTnkuQBiUc6zlEojLWWMMsTSAtsc51BkUlBFh9Hlvrfx9XsHodVrFyyUpamg7oJWCPNUppT9K6XiBBEmaC8v9tL6OgQPhW686yfaaoz0bl7dT9I39_BqDzeuhO0fSs8n42-b7K0LLXz-WuNXmgsqUv38MO1PcLp4WWhCvwBF6Iq6</addsrcrecordid><sourcetype>Aggregation Database</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype><pqid>896202473</pqid></control><display><type>article</type><title>Smart encryption channels for securing virtual machine-based networked applications</title><source>Elektronische Zeitschriftenbibliothek - Frei zugängliche E-Journals</source><source>Alma/SFX Local Collection</source><creator>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</creator><creatorcontrib>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</creatorcontrib><description>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley & Sons, Ltd.</description><identifier>ISSN: 1939-0114</identifier><identifier>ISSN: 1939-0122</identifier><identifier>EISSN: 1939-0122</identifier><identifier>DOI: 10.1002/sec.90</identifier><language>eng</language><publisher>Chichester, UK: John Wiley & Sons, Ltd</publisher><subject>Channels ; Encryption ; Java (programming language) ; Networks ; Security ; Servers ; smart encryption channels ; Sun ; Torrents ; virtual machines ; web-deployed applications</subject><ispartof>Security and communication networks, 2009-11, Vol.2 (6), p.507-518</ispartof><rights>Copyright © 2008 John Wiley & Sons, Ltd.</rights><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed><citedby>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</citedby><cites>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</cites></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>314,776,780,27903,27904</link.rule.ids></links><search><creatorcontrib>Itani, Wassim</creatorcontrib><creatorcontrib>Kayssi, Ayman</creatorcontrib><creatorcontrib>Chehab, Ali</creatorcontrib><title>Smart encryption channels for securing virtual machine-based networked applications</title><title>Security and communication networks</title><addtitle>Security Comm. Networks</addtitle><description>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley & Sons, Ltd.</description><subject>Channels</subject><subject>Encryption</subject><subject>Java (programming language)</subject><subject>Networks</subject><subject>Security</subject><subject>Servers</subject><subject>smart encryption channels</subject><subject>Sun</subject><subject>Torrents</subject><subject>virtual machines</subject><subject>web-deployed applications</subject><issn>1939-0114</issn><issn>1939-0122</issn><issn>1939-0122</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2009</creationdate><recordtype>article</recordtype><recordid>eNqF0EtLw0AUBeAgCtaqvyErxUXqvDKPpZRahaKLVgQ3w2RyY8emSZxJrP33plbciYvLPYuPszhRdI7RCCNErgPYkUIH0QArqhKECTn8zZgdRychvCHEMRNsEM3na-PbGCrrt03r6iq2S1NVUIa4qH3cd3XeVa_xh_NtZ8p4bezSVZBkJkAeV9Buar_qk2ma0lmzawin0VFhygBnP38YPd1OFuO7ZPY4vR_fzBJLU4USmdkCScUIyTKBJZcFtwo4VTnkuQBiUc6zlEojLWWMMsTSAtsc51BkUlBFh9Hlvrfx9XsHodVrFyyUpamg7oJWCPNUppT9K6XiBBEmaC8v9tL6OgQPhW686yfaaoz0bl7dT9I39_BqDzeuhO0fSs8n42-b7K0LLXz-WuNXmgsqUv38MO1PcLp4WWhCvwBF6Iq6</recordid><startdate>200911</startdate><enddate>200911</enddate><creator>Itani, Wassim</creator><creator>Kayssi, Ayman</creator><creator>Chehab, Ali</creator><general>John Wiley & Sons, Ltd</general><scope>BSCLL</scope><scope>AAYXX</scope><scope>CITATION</scope><scope>7SC</scope><scope>7SP</scope><scope>8FD</scope><scope>JQ2</scope><scope>L7M</scope><scope>L~C</scope><scope>L~D</scope></search><sort><creationdate>200911</creationdate><title>Smart encryption channels for securing virtual machine-based networked applications</title><author>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2009</creationdate><topic>Channels</topic><topic>Encryption</topic><topic>Java (programming language)</topic><topic>Networks</topic><topic>Security</topic><topic>Servers</topic><topic>smart encryption channels</topic><topic>Sun</topic><topic>Torrents</topic><topic>virtual machines</topic><topic>web-deployed applications</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>Itani, Wassim</creatorcontrib><creatorcontrib>Kayssi, Ayman</creatorcontrib><creatorcontrib>Chehab, Ali</creatorcontrib><collection>Istex</collection><collection>CrossRef</collection><collection>Computer and Information Systems Abstracts</collection><collection>Electronics & Communications Abstracts</collection><collection>Technology Research Database</collection><collection>ProQuest Computer Science Collection</collection><collection>Advanced Technologies Database with Aerospace</collection><collection>Computer and Information Systems Abstracts Academic</collection><collection>Computer and Information Systems Abstracts Professional</collection><jtitle>Security and communication networks</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Itani, Wassim</au><au>Kayssi, Ayman</au><au>Chehab, Ali</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>Smart encryption channels for securing virtual machine-based networked applications</atitle><jtitle>Security and communication networks</jtitle><addtitle>Security Comm. Networks</addtitle><date>2009-11</date><risdate>2009</risdate><volume>2</volume><issue>6</issue><spage>507</spage><epage>518</epage><pages>507-518</pages><issn>1939-0114</issn><issn>1939-0122</issn><eissn>1939-0122</eissn><abstract>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley & Sons, Ltd.</abstract><cop>Chichester, UK</cop><pub>John Wiley & Sons, Ltd</pub><doi>10.1002/sec.90</doi><tpages>12</tpages></addata></record> |
fulltext | fulltext |
identifier | ISSN: 1939-0114 |
ispartof | Security and communication networks, 2009-11, Vol.2 (6), p.507-518 |
issn | 1939-0114 1939-0122 1939-0122 |
language | eng |
recordid | cdi_proquest_miscellaneous_901658534 |
source | Elektronische Zeitschriftenbibliothek - Frei zugängliche E-Journals; Alma/SFX Local Collection |
subjects | Channels Encryption Java (programming language) Networks Security Servers smart encryption channels Sun Torrents virtual machines web-deployed applications |
title | Smart encryption channels for securing virtual machine-based networked applications |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-25T17%3A47%3A50IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_cross&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=Smart%20encryption%20channels%20for%20securing%20virtual%20machine-based%20networked%20applications&rft.jtitle=Security%20and%20communication%20networks&rft.au=Itani,%20Wassim&rft.date=2009-11&rft.volume=2&rft.issue=6&rft.spage=507&rft.epage=518&rft.pages=507-518&rft.issn=1939-0114&rft.eissn=1939-0122&rft_id=info:doi/10.1002/sec.90&rft_dat=%3Cproquest_cross%3E896202473%3C/proquest_cross%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_pqid=896202473&rft_id=info:pmid/&rfr_iscdi=true |