A Formal Separation Method of Protocols to Eliminate Parallel Attacks in Virtual Organization

Hui Zhao,Mingchu Li,Xinxin Fan
DOI: https://doi.org/10.1002/sec.281
IF: 1.968
2011-01-01
Security and Communication Networks
Abstract:The purpose of this paper is to introduce a technique to eliminate parallel attacks to protocol in virtual organization (VO) through enforcing dynamic authorization policies. Grid realizes coordinated resource sharing across multiple management domains. VO is defined as a key concept for operation and management of grid services. Due to the fact that VO focuses on dynamic, cross-organizational sharing relationships, one of the central challenges in the construction of scalable VO is that protocol specified by VO may have process of parallel running. To solve this problem, we present a formal definition of non-honest participants' malicious coordination operations which are necessary for parallel attack counterexample in VO. Based on that, we present the two-level dynamic authorization policy deploying scheme in VO for eliminating parallel attacks. Copyright (C) 2011 John Wiley & Sons, Ltd.
What problem does this paper attempt to address?