Trusted Computing Technology provides powerful support for the solution to security issues of embedded endpoints in network computing environment. In this paper a general framework of trusted access, which is for implementation on embedded trusted endpoints, is presented. The paper describes the authentication procedure of trusted access and its formal definition, and the design and implementation of the trusted access protocol. Finally, the paper presents an isolation and remediation mechanism based on embedded trusted access. The mechanism is based on 802.1X, VLAN and TNC, and can be used on both wire and wireless embedded endpoints.
Identity federation technology has been widely used in recent years. But the solution for federate access is totally different between the Web-Based and non-Web-Based scenarios. Furthermore, it is highly limited for lack of support from non-Web-Based scenarios now. This paper proposes a generic federate access solution based on LDAP roaming, which can provide reliable identity roaming in any internet service. To service providers, our solution is transparent and looks like a LDAP. The paper first presents the difficulties in realizing LDAP roaming and discusses offers solutions to the implementation of LDAP roaming. Then it evaluates the easy integration and usability of LDAP roaming.Finally it compares the Generic Solution with the existing federal access solution.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.