Practical authentication for distributed computing

Practical authentication for distributed computing
复制标题

分布式计算的实用认证

DOI:
10.1109/risp.1990.63836
复制
发表时间:
1990
期刊:
Proceedings. 1990 IEEE Computer Society Symposium on Research in Security and Privacy
影响因子:
--
通讯作者:
J. Linn
J. Linn
中科院分区:
--
文献类型:
--
作者:
J. Linn

文献摘要

被引文献

相似文献

讨论了与分布式计算环境中的身份验证相关的问题。描述了数字设备公司的分布式系统安全架构 (DSSA) 中使用的身份验证方法。考虑节点、用户和进程粒度身份验证问题。身份验证基于全局分层命名结构和公钥加密。将实体与长期密钥关联起来的目录驻留证书与代表实体之间临时绑定的动态签名证书结合使用。分布式系统元素可能会互相怀疑。在节点级别,考虑的特殊主题包括身份验证和安全加载之间的关系以及身份验证和基于规则的策略支持之间的关系。在用户级别,确定了体系结构要求,并描述了基于智能卡和用户输入密码的身份验证协议选项。<<ETX>>
Issues related to authentication in a distributed computing environment are discussed. Authentication approaches used in Digital Equipment Corporation's Distributed System Security Architecture (DSSA) are described. Node, user, and process granularity authentication concerns are considered. Authentication is based on a global hierarchic naming structure and public-key cryptography. Directory-resident certificates associating entities with long-term keys are used in conjunction with dynamically signed certificates which represent transient bindings between entities. Distributed system elements can be mutually suspicious. At the node level, special topics considered include the relationship between authentication and secure loading and the relationship between authentication and rule-based policy support. At the user level, architecture requirements are identified and authentication protocol options based on smart cards and on user-entered passwords are described.<<ETX>>