SATEM based Policy Enforcement in MANET
暂无分享,去创建一个
Mobile Ad hoc Network (MANET) is a self-configuring wireless network in which the routers can move and organize themselves arbitrarily. To ensure secure communication in MANET, the applications running in these networks must be regulated by proper communication policies. The design and implementation of a policy enforcing mechanism is based on SATEM (Service Aware Trusted Execution Monitor), a trusted service-aware execution monitor that guarantees the trustworthiness of the MANET service or application code execution across the entire transaction. Under this mechanism, each application or protocol has an associated policy. Two instances of an application running on different nodes may engage in communication only if these nodes enforce the same set of policies for both the application and the underlying protocols used by the application. In this way, nodes can form trusted application-centric networks. Before allowing a node to join in the network, Satem verifies its trustworthiness of enforcing the required set of policies. Furthermore, Satem protects the policies and the software enforcing these policies from being tampered with. If any of the nodes is compromised, Satem disconnects the node from the network.