Cross-domain access control via PKI

Cross-domain access control via PKI
复制标题

通过PKI进行跨域访问控制

DOI:
10.1109/policy.2002.1011308
复制
发表时间:
2002
期刊:
Proceedings Third International Workshop on Policies for Distributed Systems and Networks
影响因子:
--
通讯作者:
Yutaka Miyake
Yutaka Miyake
中科院分区:
--
文献类型:
--
作者:
G. Denker;J. Millen;Yutaka Miyake

文献摘要

被引文献

相似文献

在本说明中,我们考虑如何基于角色的访问控制,可以在大规模的互联网和跨组织边界进行管理。我们采用PKI方法,用户和服务器一样使用公钥证书进行标识。我们的方法的主要特点是:(客户端,角色)对访问控制;隐含的撤销的基础上的角色层次结构;自动生成的证书有效性门票和证书链,以证明客户端的角色层次结构的服务器。
In this note we consider how role-based access control can be managed on a large scale over the Internet and across organizational boundaries. We take a PKI approach, in which users are identified using public key certificates, as are the servers. The main features of our approach are: access control by (client, role) pair; implied revocation based on the role hierarchy; automatic generation of certificate validity tickets; and certificate chains to prove a client role hierarchy to a server.