Публікація:
Застосування Zero-Trust Architecture для забезпечення безпеки AI-агентів на базі Model Context Protocol

Завантаження...
Зображення мініатюри

Дата

Назва журналу

ISSN журналу

Назва тому

Видавець

ХНУРЕ

Дослідницькі проекти

Організаційні одиниці

Випуск журналу

Анотація

This paper proposes an approach to integrating Zero-Trust Architecture (ZTA) principles, as defined by NIST SP 800-207, into the security layer of AI agents operating via the Model Context Protocol (MCP). The MCP specification enables LLM-based agents to invoke external tools through a standardized JSON-RPC 2.0 interface, but does not prescribe a comprehensive security policy. The proposed method adapts the Policy Engine, Policy Administrator, and Policy Enforcement Point triad to intercept and validate every MCP tool invocation. Microsegmentation is applied at the MCP server level, ensuring each server operates within an isolated trust zone with least-privilege access. Continuous authentication monitors agent behavior patterns to detect anomalous action sequences, enabling real-time revocation of permissions.

Опис

Ключові слова

Zero-Trust Architecture, Model Context Protocol

Цитування

Пестун А. М. Застосування Zero-Trust Architecture для забезпечення безпеки AI-агентів на базі Model Context Protocol // Радіоелектроніка та молодь у XXI столітті : матеріали 30-го Міжнар. молодіж. форуму, 22–24 квітня 2026 р. Харків, 2026. Т. 6. С. 90-92.

DOI

Схвалення

Рецензія

Доповнено

На які посилаються