Building intrusion tolerant applications

21Citations
Citations of this article
23Readers
Mendeley users who have this article in their library.
Get full text

Abstract

The ITTC project (Intrusion Tolerance via Threshold Cryptography) provides tools and an infrastructure for building intrusion tolerant applications. Rather than prevent intrusions or detect them after the fact, the ITTC system ensures that the compromise of a few system components does not compromise sensitive security information. To do so we protect cryptographic keys by distributing them across a few servers. The keys are never reconstructed at a single location. Our designs are intended to simplify the integration of ITTC into existing applications. We give examples of embedding ITTC into the Apache web server and into a Certification Authority (CA). Performance measurements on both the modified web server and the modified CA show that the architecture works and performs well.

Cite

CITATION STYLE

APA

Malkin, M., Wu, T., & Boneh, D. (2000). Building intrusion tolerant applications. In Proceedings - DARPA Information Survivability Conference and Exposition, DISCEX 2000 (Vol. 1, pp. 74–87). Institute of Electrical and Electronics Engineers Inc. https://doi.org/10.1109/DISCEX.2000.824963

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free