Hide menu

Secure execution of e-services

This project has completed.

Principal investigator: Professor Nahid Shahmehri
Members: Dr. Claudiu Duma (former member)
Almut Herzog (former member)
Partners: Ericsson
Funding agency:
Related projects: Secure e-service software delivery
Security and usability
Methods and Tools for Secure Software
Keywords: security, usability, policy, e-services, resource control, malware

Summary

As part of our home automation project with Ericsson, we have explored issues related to secure execution of potentially untrusted services. Our initial work in this area focused on the Java sandbox and resource control for e.g. threaded applications. During this process, we discovered the need for fine-grained usable run-time security policies.

Publications

  • Herzog, A., Shahmehri N., `Problems Running Untrusted Services as Java Threads', Nardelli, E., Talamo, M. (eds) Certification and Security in Inter-Organizational E-Services - Proceedings of CSES'04 (Toulouse, France, August 26-27, 2004), pp 19-32, Springer Verlag, 2005. ISBN 0-387-25087-5.
  • Herzog A., Shahmehri N., 'Using the Java Sandbox for Resource Control'. Proceedings of the 7th Nordic Workshop on Secure IT Systems (NordSec), Karlstad, Sweden. pp. 135-147. November, 2002.
  • Herzog A., Shahmehri N., 'Towards Secure E-Services: Risk Analysis of a Home Automation Service'. Proceedings of the 6th Nordic Workshop on Secure IT-Systems (Nordsec), pp 18-26, Technical University of Denmark, Lungby, Denmark, Nov. 1-2, 2001.
  • Herzog A., Shahmehri N., Bednarski A., Chisalita I., Nordqvist U., Saldamli L., Szentivanyi D., Östring M., 'Security Issues in E-Home Network and Software Infrastructures', Short paper. Proceedings of the Third Conference on Computer Science and Systems Engineering, CCSSE '01, pp 155-161, Norrköping, ProNova, Linköping, Sweden 2001.
  • Duma C., Herzog A., Shahmehri N., 'Towards Secure e-Services'. In the proceedings of the IEEE 9th International Workshops on Enabling Technologies: Enterprise Security, pp 221-222, June 14-16, NIST, Gaithursburg, Maryland, USA, 2000.

Page responsible: Nahid Shahmehri
Last updated: 2009-08-24