|
| |
Implementation of Security in the ACE
Committee
Dr. Joseph .B Evans (chair), Dr. Gary
Minden, Dr.Arvin Agah
Proposed work: Provide
a framework for a number of ACE users, devices and services to interact and be controlled
by a variety of users in a secure fashion. The security layer is to be provided over the
wired and the wireless medium. Described below is the security framework that is expected
to be present in the ACE Infrastructure.
- Providing
a Security Protocol for a remote system/user to authenticate and log itself into a secure
environment.
- Work in this
area involves implementing a basic protocol for remote log in and control of ACE
resources. Most of this will be standard (which use EAP like Cisco, Microsoft etc), with a
few changes to suit the ACE network. The changes for the wireless domain will more in the
area of proper design keeping in mind the availability issues. This protocol can be
implemented throughout the ACE network, with the design/efficiency focus on wireless
networks.
- Providing
a method of safe and secure key distribution /storage for all the different
systems/devices.
- There is a
lack of proper key management perspective in the wireless domain. Work in this area shall
concentrate on implementing a key management protocol for the ACE infrastructure, and
hence, the wireless domain also. There are a number of issues in this like management,
distribution and reusability time etc that can be addressed.
- Providing
identity management to Users and daemons alike thro X509 certificates
|