Cross-domain access control via PKI
Cross-domain access control via PKI
复制标题
通过PKI进行跨域访问控制
DOI:
10.1109/policy.2002.1011308
复制
发表时间:
2002
期刊:
影响因子:
--
通讯作者:
Yutaka Miyake
中科院分区:
文献类型:
--
作者:
G. Denker;J. Millen;Yutaka Miyake
In this note we consider how role-based access control can be managed on a large scale over the Internet and across organizational boundaries. We take a PKI approach, in which users are identified using public key certificates, as are the servers. The main features of our approach are: access control by (client, role) pair; implied revocation based on the role hierarchy; automatic generation of certificate validity tickets; and certificate chains to prove a client role hierarchy to a server.