Smart encryption channels for securing virtual machine-based networked applications

We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expecte...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Security and communication networks 2009-11, Vol.2 (6), p.507-518
Hauptverfasser: Itani, Wassim, Kayssi, Ayman, Chehab, Ali
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page 518
container_issue 6
container_start_page 507
container_title Security and communication networks
container_volume 2
creator Itani, Wassim
Kayssi, Ayman
Chehab, Ali
description We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley & Sons, Ltd.
doi_str_mv 10.1002/sec.90
format Article
fullrecord <record><control><sourceid>proquest_cross</sourceid><recordid>TN_cdi_proquest_miscellaneous_901658534</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>896202473</sourcerecordid><originalsourceid>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</originalsourceid><addsrcrecordid>eNqF0EtLw0AUBeAgCtaqvyErxUXqvDKPpZRahaKLVgQ3w2RyY8emSZxJrP33plbciYvLPYuPszhRdI7RCCNErgPYkUIH0QArqhKECTn8zZgdRychvCHEMRNsEM3na-PbGCrrt03r6iq2S1NVUIa4qH3cd3XeVa_xh_NtZ8p4bezSVZBkJkAeV9Buar_qk2ma0lmzawin0VFhygBnP38YPd1OFuO7ZPY4vR_fzBJLU4USmdkCScUIyTKBJZcFtwo4VTnkuQBiUc6zlEojLWWMMsTSAtsc51BkUlBFh9Hlvrfx9XsHodVrFyyUpamg7oJWCPNUppT9K6XiBBEmaC8v9tL6OgQPhW686yfaaoz0bl7dT9I39_BqDzeuhO0fSs8n42-b7K0LLXz-WuNXmgsqUv38MO1PcLp4WWhCvwBF6Iq6</addsrcrecordid><sourcetype>Aggregation Database</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype><pqid>896202473</pqid></control><display><type>article</type><title>Smart encryption channels for securing virtual machine-based networked applications</title><source>Elektronische Zeitschriftenbibliothek - Frei zugängliche E-Journals</source><source>Alma/SFX Local Collection</source><creator>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</creator><creatorcontrib>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</creatorcontrib><description>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley &amp; Sons, Ltd.</description><identifier>ISSN: 1939-0114</identifier><identifier>ISSN: 1939-0122</identifier><identifier>EISSN: 1939-0122</identifier><identifier>DOI: 10.1002/sec.90</identifier><language>eng</language><publisher>Chichester, UK: John Wiley &amp; Sons, Ltd</publisher><subject>Channels ; Encryption ; Java (programming language) ; Networks ; Security ; Servers ; smart encryption channels ; Sun ; Torrents ; virtual machines ; web-deployed applications</subject><ispartof>Security and communication networks, 2009-11, Vol.2 (6), p.507-518</ispartof><rights>Copyright © 2008 John Wiley &amp; Sons, Ltd.</rights><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed><citedby>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</citedby><cites>FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</cites></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>314,776,780,27903,27904</link.rule.ids></links><search><creatorcontrib>Itani, Wassim</creatorcontrib><creatorcontrib>Kayssi, Ayman</creatorcontrib><creatorcontrib>Chehab, Ali</creatorcontrib><title>Smart encryption channels for securing virtual machine-based networked applications</title><title>Security and communication networks</title><addtitle>Security Comm. Networks</addtitle><description>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley &amp; Sons, Ltd.</description><subject>Channels</subject><subject>Encryption</subject><subject>Java (programming language)</subject><subject>Networks</subject><subject>Security</subject><subject>Servers</subject><subject>smart encryption channels</subject><subject>Sun</subject><subject>Torrents</subject><subject>virtual machines</subject><subject>web-deployed applications</subject><issn>1939-0114</issn><issn>1939-0122</issn><issn>1939-0122</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2009</creationdate><recordtype>article</recordtype><recordid>eNqF0EtLw0AUBeAgCtaqvyErxUXqvDKPpZRahaKLVgQ3w2RyY8emSZxJrP33plbciYvLPYuPszhRdI7RCCNErgPYkUIH0QArqhKECTn8zZgdRychvCHEMRNsEM3na-PbGCrrt03r6iq2S1NVUIa4qH3cd3XeVa_xh_NtZ8p4bezSVZBkJkAeV9Buar_qk2ma0lmzawin0VFhygBnP38YPd1OFuO7ZPY4vR_fzBJLU4USmdkCScUIyTKBJZcFtwo4VTnkuQBiUc6zlEojLWWMMsTSAtsc51BkUlBFh9Hlvrfx9XsHodVrFyyUpamg7oJWCPNUppT9K6XiBBEmaC8v9tL6OgQPhW686yfaaoz0bl7dT9I39_BqDzeuhO0fSs8n42-b7K0LLXz-WuNXmgsqUv38MO1PcLp4WWhCvwBF6Iq6</recordid><startdate>200911</startdate><enddate>200911</enddate><creator>Itani, Wassim</creator><creator>Kayssi, Ayman</creator><creator>Chehab, Ali</creator><general>John Wiley &amp; Sons, Ltd</general><scope>BSCLL</scope><scope>AAYXX</scope><scope>CITATION</scope><scope>7SC</scope><scope>7SP</scope><scope>8FD</scope><scope>JQ2</scope><scope>L7M</scope><scope>L~C</scope><scope>L~D</scope></search><sort><creationdate>200911</creationdate><title>Smart encryption channels for securing virtual machine-based networked applications</title><author>Itani, Wassim ; Kayssi, Ayman ; Chehab, Ali</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-c3590-8bcf089422bb71868f6c9e639dedd7e2c0d6b538a8c34434045f1cd1defb87393</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2009</creationdate><topic>Channels</topic><topic>Encryption</topic><topic>Java (programming language)</topic><topic>Networks</topic><topic>Security</topic><topic>Servers</topic><topic>smart encryption channels</topic><topic>Sun</topic><topic>Torrents</topic><topic>virtual machines</topic><topic>web-deployed applications</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>Itani, Wassim</creatorcontrib><creatorcontrib>Kayssi, Ayman</creatorcontrib><creatorcontrib>Chehab, Ali</creatorcontrib><collection>Istex</collection><collection>CrossRef</collection><collection>Computer and Information Systems Abstracts</collection><collection>Electronics &amp; Communications Abstracts</collection><collection>Technology Research Database</collection><collection>ProQuest Computer Science Collection</collection><collection>Advanced Technologies Database with Aerospace</collection><collection>Computer and Information Systems Abstracts – Academic</collection><collection>Computer and Information Systems Abstracts Professional</collection><jtitle>Security and communication networks</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Itani, Wassim</au><au>Kayssi, Ayman</au><au>Chehab, Ali</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>Smart encryption channels for securing virtual machine-based networked applications</atitle><jtitle>Security and communication networks</jtitle><addtitle>Security Comm. Networks</addtitle><date>2009-11</date><risdate>2009</risdate><volume>2</volume><issue>6</issue><spage>507</spage><epage>518</epage><pages>507-518</pages><issn>1939-0114</issn><issn>1939-0122</issn><eissn>1939-0122</eissn><abstract>We present PARAGON, a novel security protocol for efficiently securing the network communications of web‐deployed enterprise applications. PARAGON relies on an application tag set, which is a collection of metadata entries that specify the backend servers with which the client application is expected to communicate during its lifetime. The application tag set controls the quality of the security mechanisms established on each backend server connection, and allows the security protocol to utilize the trust relationship present between the deployed application and its source server to create a set of public‐key security associations between the source server and the enterprise backend servers on behalf of the client. PARAGON is a multi‐phase security protocol that matures with time. Incrementally, PARAGON approaches a fully symmetric‐key encryption system. The performance advantage becomes evident when the client application communicates with a relatively large set of remote servers. Examples of such clients include web browsers, email clients, file torrent clients, stock exchange applications, etc. A prototype implementing PARAGON's specifications and showing its performance advantages is shown for SUN's J2SE 1.6/J2EE 1.5 platforms. Copyright © 2008 John Wiley &amp; Sons, Ltd.</abstract><cop>Chichester, UK</cop><pub>John Wiley &amp; Sons, Ltd</pub><doi>10.1002/sec.90</doi><tpages>12</tpages></addata></record>
fulltext fulltext
identifier ISSN: 1939-0114
ispartof Security and communication networks, 2009-11, Vol.2 (6), p.507-518
issn 1939-0114
1939-0122
1939-0122
language eng
recordid cdi_proquest_miscellaneous_901658534
source Elektronische Zeitschriftenbibliothek - Frei zugängliche E-Journals; Alma/SFX Local Collection
subjects Channels
Encryption
Java (programming language)
Networks
Security
Servers
smart encryption channels
Sun
Torrents
virtual machines
web-deployed applications
title Smart encryption channels for securing virtual machine-based networked applications
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-25T17%3A47%3A50IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_cross&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=Smart%20encryption%20channels%20for%20securing%20virtual%20machine-based%20networked%20applications&rft.jtitle=Security%20and%20communication%20networks&rft.au=Itani,%20Wassim&rft.date=2009-11&rft.volume=2&rft.issue=6&rft.spage=507&rft.epage=518&rft.pages=507-518&rft.issn=1939-0114&rft.eissn=1939-0122&rft_id=info:doi/10.1002/sec.90&rft_dat=%3Cproquest_cross%3E896202473%3C/proquest_cross%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_pqid=896202473&rft_id=info:pmid/&rfr_iscdi=true