Where am I? > Home > News > Technology

Controlling the language of security

Science Centric | 19 September 2009 11:40 GMT — Comments (1) — Votes (1)
Printable version A clip for your blog or website E-mail the story to a friend
Bookmark or share the story on your social network Vote for this article Leave a comment Decrease text size Increase text size
DON'T MISS —
Apple launches iPad
Apple launches iPad — [28 Jan 2010] — Apple introduced iPad, a revolutionary device for browsing the web, reading and sending email, enjoying photos, watching...
Digital version of the oldest Bible available
Digital version of the oldest Bible available — [6 Jul 2009] — The surviving pages of the world's oldest biblical manuscript have been reunited digitally in a single book. Today, the famous...
New 'electronic glue' promises cheaper semiconductors
New 'electronic glue' promises cheaper semiconductors — [11 Jun 2009] — Researchers at the University of Chicago and Lawrence Berkeley National Laboratory have developed an 'electronic glue' that...
Marcus Nanotechnology Building at Georgia Tech formally dedicated
Marcus Nanotechnology Building at Georgia Tech formally dedicated — [24 Apr 2009] — Three years after breaking ground, Georgia Tech is set to dedicate the Marcus Nanotechnology Building, one of the most ambitious...
More Technology...

Korean computer scientists have developed a security policy specification for home networks that could make us more secure from cyber attack in our homes. They report details in the International Journal of Ad Hoc and Ubiquitous Computing.

Companies, banks, and other organisations take internet security very seriously and usually have firewalls and IT departments to protect them from attack as a matter of course. Domestic and small office networks are just as vulnerable to hacking, malicious computer code, worms, viruses, and eavesdropping. An attack can wreak havoc on individuals and small businesses when security it compromised.

With home and small office networks connecting all kinds of devices - personal computers, mobile devices, remote security cameras, gaming consoles, and more - they represent an even more heterogeneous mix than many larger offices.

Now, Geon Woo Kim of the Electronics and Telecommunications Research Institute, in Korea, and colleagues there and at Kyungpook National University, have developed a specification for security policy on home networks that can guarantee reliability and availability. The specification also takes into account authentication, authorisation, security policy deployment so that all users in the home are not only protected from malware but also can help ensure everyone can use the network when they need to.

Kim and his team explain that home networks most commonly have only a single gateway from the internet. Every packet of information must pass through this gateway at the border between the home network and the internet. It should act as a core component providing all security. 'Whenever a new access to the home network is found, it should be able to authenticate and authorise it and enforce the security policy based on rules set by the home administrator,' the team says.

However, to make such an approach effective but simple requires a way to consistently describe and specify the security policy. The computer scientists first turned to a computer markup language, eXtensible Access Control Markup Language (XACML). XACML is a general purpose language and so it lacks the notation for security policies and authorisation rules. The team has now developed a related language - Home security Description Language, xHDL - that includes the necessary notation for securing a home network.

The new language consists of seven elements: combining-rule element, authentication element, user element, object element, object-group element, role element, and rule elements. Each of these terms within xHDL could be used to run a browser-based control centre. That program would provide the domestic administrator with simple control options to allow access to the home network only for specific devices and to control the packets of information that can pass through the gateway to and from the internet.

Source: Inderscience Publishers

'The computer scientists first turned to a computer markup language, eXtensible Access Control Markup Language (XACML). XACML is a general purpose language and so it lacks the notation for security policies and authorisation rules.'

XACML is a Standard Policy Language specifically designed to express authorisation/access control rules and policies and is based on XML. The claim it 'lacks notation for security policies and authorisation rules' is quite interesting...
Posted by Helge Janicke, 24 Sep 2009 10:08 GMT

NIST physicist Jun Ye adjusts the laser setup for a strontium atomic clock in his laboratory at JILA, a joint institute of NIST and the University of Colorado at Boulder, (c) J. Burrus/NISTScientists get a grip on colliding fermions to enhance atomic clock accuracy

— 16 April 2009

Physicists have measured and controlled seemingly forbidden collisions between neutral strontium atoms - a class of antisocial atoms known as fermions that are not supposed to collide... — full story

Education professor Michael A. Peters says universities need to embrace new online media, social networks and a culture of 'openness' as part of their pedagogy, or they risk becoming seen as anachronisms in today's hyper-connected world, (c) L. Brian StaufferIvory tower needs to adapt to online media landscape, scholar says

— 11 April 2009

Universities need to embrace new online media, social networks and a culture of 'openness' as part of their pedagogy, or they risk becoming seen as anachronisms in today's hyper-connected... — full story

A force sensor (square at the centre) ensures that robots instantaneously sense collisions. The sensor is attached to a steel plate and can be screwed onto the outer joint of the robot arm, (c) Fraunhofer ISITSensitive robots

— 6 April 2009

Robots are commonplace in production halls, but are only allowed to operate in protected areas so as not to endanger humans with their movements. A new cost-efficient, robust force... — full story

Researchers at Rensselaer Polytechnic Institute have discovered a new technique for provoking unusual crazing behaviour in epoxy composites. The crazing, which causes the composite to deform into a network of nanoscale pillar-like fibres that bridge together both sides of a crack and slow its growth, could lead to tougher, more durable components for aircraft and automobiles, (c) Rensselaer/KoratkarFitter frames: Nanotubes boost structural integrity of composites

— 27 March 2009

A new research discovery at Rensselaer Polytechnic Institute could lead to tougher, more durable composite frames for aircraft, watercraft, and automobiles. Epoxy composites are increasingly... — full story


Popular tags in Technology: graphene · laser · nanotubes · semiconductor