A Basis for Secure Communication in Large Distributed Systems

David P. Anderson and P. Venkat Rangan

EECS Department
University of California, Berkeley
Technical Report No. UCB/CSD-87-328
February 1987

http://www2.eecs.berkeley.edu/Pubs/TechRpts/1987/CSD-87-328.pdf

We propose a secure communication architecture for distributed systems that puts security below the transport level, and uses host-to-host rather than process-to-process secure channels. We argue that this provides the same level of end-to-end security as putting security at higher levels, and that it can simplify and improve the performance of transport protocols. The architecture is designed for very large distributed systems, which in general have security requirements beyond those of LAN-based systems.


BibTeX citation:

@techreport{Anderson:CSD-87-328,
    Author = {Anderson, David P. and Rangan, P. Venkat},
    Title = {A Basis for Secure Communication in Large Distributed Systems},
    Institution = {EECS Department, University of California, Berkeley},
    Year = {1987},
    Month = {Feb},
    URL = {http://www2.eecs.berkeley.edu/Pubs/TechRpts/1987/5402.html},
    Number = {UCB/CSD-87-328},
    Abstract = {We propose a secure communication architecture for distributed systems that puts security below the transport level, and uses host-to-host rather than process-to-process secure channels. We argue that this provides the same level of end-to-end security as putting security at higher levels, and that it can simplify and improve the performance of transport protocols. The architecture is designed for very large distributed systems, which in general have security requirements beyond those of LAN-based systems.}
}

EndNote citation:

%0 Report
%A Anderson, David P.
%A Rangan, P. Venkat
%T A Basis for Secure Communication in Large Distributed Systems
%I EECS Department, University of California, Berkeley
%D 1987
%@ UCB/CSD-87-328
%U http://www2.eecs.berkeley.edu/Pubs/TechRpts/1987/5402.html
%F Anderson:CSD-87-328