Archive for May, 2007

An EBook

`This is an old but nice book regarding Trusted System and Computer Security. One can appreciate the author’s clear ideas and imagination about the subject.

http://nucia.unomaha.edu/library/gasserbook.pdf

Thursday, May 31st, 2007 Resources, Trusted Computing 4 Comments

Core 7

Congradulations! Fedora Core 7  has been released.

Mr. TAT plz put it on download tomorow. I have some other things to download too. Maybe I’ll show up tomorow.

Thursday, May 31st, 2007 Linux, News 2 Comments

Operating system security

Shaz: the given url is Research course site for advances in Trustworthy computing … the sites is usefull for recent advancement on operating system level security including TC and IMA and SELinux and more as well…

http://www.tml.tkk.fi/Opinnot/T-110.7200/2007/

Regards

Thursday, May 31st, 2007 Resources 1 Comment

Need a development platform

I have downloaded bochs and have vmware and have easy access to XEN and many others like UML are also available. But I need a tutorial for understanding how to use latest kernel and not the old images for working on patches and compilations without destroying my disk and installations.

Anybody has a clue? Sir Mr. MMA you must have some idea becoz u’ve been through development in the past.

Wednesday, May 30th, 2007 Uncategorized 14 Comments

TPM Emulator

Mr. TAT was installing and configuring TPM emulator. It would not run because of some driver initialization problem. I was thinking if it make sense, do we need to install tpm drivers? I mean maybe the emulator does not include drivers. Although it had some /dev/tpm and tpmd entries but we can try this for a change.

But I wish it has been sorted out by now.  MarioStrasser seems to be weak at troubleshooting his own designs!

Wednesday, May 30th, 2007 Trusted Computing 1 Comment

The Practical Part Starts Now

As soon as I am over with Recluze, I am going to start working with IPSec and SELinux now that my literature survey is complete (I think so). Next I plan to get some help from MR. MMA to let me in on his findings regarding how to stack IMA on SELinux.

I personally think using TPM’s PCR will be another good thing instead of IMA because IMA has more then I need. But according to Mr. MMA its very problematic. Sir have you tried to copy the technique IMA uses to address PCR.

Side by side I am trying to understand the functionality of the Tresys’ Policy Management Server and the module support it provides for policies because I am looking forward to incorporate it for ditributed MAC implementation.

One thing that confuses me, this is for Mr TAT and Mr. MMA, can we skip DAC if we use MAC? Is MAC’s use enough for OS requirements?

If we could just have a few more people we could start adjusting applications for MAC implementations! Its also a good idea for BSc/BCS projects. We could also move towards LDAP NIS etc.

Publications by Citations

I came across this link about impacts of different publications according to the number of citations prepared by CiteSeer. I’m not sure if it’s authentic or reliable but here it is anyway:

http://citeseer.ist.psu.edu/impact.html

And shaz: I’m not sure if you work better or worse under pressure but if you do a search on ICTAI (that’s the greek conference), you’ll see that it’s present in the list. International Conference on Tools with Artificial Intelligence. So, get to work on the paper. It’s going to be difficult getting the paper published in there.

Sunday, May 27th, 2007 Conferences 3 Comments

CRBAC Specification / For Shaz

A.A. everyone,

Mr. MM: I’ve started working on the formalization RBAC in Z. It’s not as easy as I thought it would be. There are some conflicts between Z notation and normal math notations. And of course, I don’t have much experience. Anyway, I still think it can be done before the due date. Has there been a time set for a meeting on Saturday with Mr. T?

Shaz: How’s that paper review/changes coming along? You have two more days :)

Friday, May 25th, 2007 Uncategorized 2 Comments

Mobile platform coupled with Trusted Computing!

Shahbaz: see what people are doing in mobile technology. You mentioned some where that Adnan had offered you to work for a mobile technology. If all of your work can shaped to this mobile technology, it will be very nice. Consider distributed devices as mobile phones, not only PC’s in your idea. Got it!

The following talk will be in our group on 26th of June. I will update you people, if some one is interested!


ABSTRACT:

A mobile ad-hoc network (MANET) is based on a self-organizing and rapidly deployed network of mobile devices to exchange information without using any pre-existing fixed network infrastructure. Mobile services (M-services) suit the healthcare scenarios in terms of the healthcare providers have to be highly cooperative and collaborative in an ad hoc manner. To meet the needs of highly mobile patients in healthcare institutions, mobile devices such as Personal Digital Assistants (PDAs) and tablet PCs are being used for storing entire patient histories and physicals, research data collection forms, the physician’s reference desk, current care plans, and drug orders, as m-services. However, many healthcare institutions find it difficult to build such an infrastructure that can fully address privacy access control requirements, especially in light of recent changes in health privacy legislative environment. One reason is the lack of clear linkages from privacy considerations at a management-level conceptualization to the technology implementations of privacy access control mechanisms and solutions. The primary focus of this research project is the privacy access control enforcement model for healthcare applications of adapting mobile devices over MANETs in terms of emerging communication technologies. In particular, the major research challenge is that the mobile devices come together on an ad hoc basis in the sense that the devices had not been programmed a priori to work with each other. This talk will give an overview of all the related research issues in this context and discuss the future research directions.

SHORT BIO:
Patrick C. K. Hung is an Assistant Professor at the Faculty of Business and Information Technology in UOIT and an Adjunct Assistant Professor at the Department of Electrical and Computer Engineering in University of Waterloo. Patrick is currently collaborating with Boeing Phantom Works (Seattle, USA) and Bell Canada on security- and privacy-related research projects, and he has filed two US patent applications on “Mobile Network Dynamic Workflow Exception Handling System.” In addition, Patrick is also cooperating on Web services composition research projects with Southeast University in China. He was a Research Scientist with Commonwealth Scientific and Industrial Research Organization (Canberra, Australia) and a Visiting Assistant Professor at the Department of Computer Science in the Hong Kong University of Science and Technology. Patrick has been serving as a panelist of the Small Business Innovation Research and Small Business Technology Transfer programs of the National Science Foundation (NSF) in the States since 2000. He is an executive committee member of the IEEE Computer Society’s Technical Steering Committee for Services Computing, a steering member of EDOC “Enterprise Computing,” and an associate editor/editorial board member/guest editor in several international journals. He is the Program Co-Chair of the 9th IEEE EDOC 2005, the General Chair of the 10th IEEE EDOC 2006 and the Program Committee Vice-Chair of the 2006 IEEE SCC 2006 and 2007.

Thursday, May 24th, 2007 Uncategorized 2 Comments

Distributed Selinux

This is what I had in mind!

->      Network Policy Management

But there is still lots of room for work! . This is especially for Mr. MMA.

Monday, May 21st, 2007 SELinux 4 Comments