Towards a model for trust relationships in virtual enterprises

Trust is a crucial concept in order to address scalability in managing security tasks such as authentication, authorization and access control. In this paper we discuss the concept of trust by defining a general theoretical model to describe basic trust relationships in heterogeneous environments composed of several Administrative Domains (ADs), i.e. autonomous domains for both security and administrative issues. As a result, we introduce the design of a Trust Management System (TMS) that we plan to deploy into a middleware architecture in order to provide a framework for implementing trust relationships in Virtual Enterprises (VEs).

[1]  Morris Sloman,et al.  A survey of trust in internet applications , 2000, IEEE Communications Surveys & Tutorials.

[2]  Joan Feigenbaum,et al.  The Role of Trust Management in Distributed Systems Security , 2001, Secure Internet Programming.

[3]  Ninghui Li,et al.  Design of a role-based trust-management framework , 2002, Proceedings 2002 IEEE Symposium on Security and Privacy.

[4]  Karl Fürst,et al.  Managing Access in Extended Enterprise Networks , 2002, IEEE Internet Comput..

[5]  Joan Feigenbaum,et al.  KeyNote : Trust management for public-key infrastructures. Discussion , 1999 .

[6]  Daniel W. Manchala E-Commerce Trust Metrics and Models , 2000, IEEE Internet Comput..

[7]  Joan Feigenbaum,et al.  KeyNote: Trust Management for Public-Key Infrastructures (Position Paper) , 1998, Security Protocols Workshop.

[8]  Joan Feigenbaum,et al.  Decentralized trust management , 1996, Proceedings 1996 IEEE Symposium on Security and Privacy.

[9]  Jean Bacon,et al.  Access control and trust in the use of widely distributed services , 2001, Softw. Pract. Exp..

[10]  Jean Bacon,et al.  Access control in an open distributed environment , 1998, Proceedings. 1998 IEEE Symposium on Security and Privacy (Cat. No.98CB36186).

[11]  Vijay Karamcheti,et al.  dRBAC: distributed role-based access control for dynamic coalition environments , 2002, Proceedings 22nd International Conference on Distributed Computing Systems.