|
During the workshop a lot of feedback has been provided by the participants. The following list
summarizes the feedback given to the PAMPAS consortium. Note that the list might not be complete. Also, it
might not represent the consortium's view.
Network and transport security
- General requirements: Mention performance constraints of mobile devices,
bandwidth etc. in the introduction as a general issue which has to considered
(not a research topic on its own). Also applies to costs, accountability,
trust models, etc.
- Mention DAB and DVB in the multicast open research issue
- Cybercrime/terrorism needs to be covered, at least in introduction (related to DoS, protection
of infrastructure, lawful interception)
- Lawful interception not a research issue for FP6
- Intrusion detection should be listed under protection of infrastructure
- Include secure address configuration in secure network access
- Access control policies (in terminal: automatic decision for switching
between e.g. WLAN, UMTS etc.) probably different rating w.r.t. business and
end user view
- Visibility, awareness and configurability of security and privacy,
add it as research issue
- Make secure network support for applications more specific
- Be more specific w.r.t. threats related to all-IP
Application management and application security
- Discuss rating criteria in more detail
- Requirement: distribute functionality in such a way that constraints
in a mobile environment are fulfilled best. Related aspects: SSO, delegation
crypto functions
- Secure execution environment: partly covered by SIM, TCPA
- Mobile agents related issues need reworking, reduce emphasis or drop,
is not mobile-specific
- Rating of anonymous payment should take into difficult business case
for many payments
- Peer to peer security is very important in context of DRM
- Back-up solutions for lost or crashed mobile become the more important
the more a user becomes dependent on his mobile, related to SyncML security?
Privacy implications
Id management and privacy
- Web voting for ranking (to be discussed in consortium)
- Lots of uncertainty about rating methods
- Start with a ranking, may reconsider result if it appears unreasonable
- Security tokens: move to basic technologies, remark that this be addressed
in more detail by RESET, discussion equal level of detail for different open
research issues
- Back office control of user data: include and set pointer to RAPID
If you would like to provide further input, please send it to the our mailing list:
pampas-roadmap@eed.ericsson.se.
Note that you have to be a member of the list in order to post to it. For details
of how to subscribe to the list, click here.
|
|