A distributed certificate management system (DCMS) supporting group-based access controls

作者: R. Oppliger , A. Greulich , P. Trachsel

DOI: 10.1109/CSAC.1999.816033

关键词:

摘要: Mainly for scalability reasons, many cryptographic security protocols make use of public key cryptography and require the existence a corresponding infrastructure (PKI). A PKI, in turn, consists one or several certification authorities (CAs) that issue revoke certificates users other CAs. Contrary to its conceptual simplicity, establishment operational maintenance CA PKI has aimed our be difficult practice. As viable alternative, this paper proposes an architecture distributed certificate management system (DCMS) can also used provide support group-based access controls. The been prototyped is being by Swiss Federal Strategy Unit Information Technology (FSUIT) protect intranet resources.

参考文章(12)
Andreas Greulich, Rolf Oppliger, Peter Trachsel, Der Einsatz eines verteilten Zertifikat-Managementsystems in der Schweizerischen Bundesverwaltung Vieweg+Teubner Verlag. pp. 81- 96 ,(1999) , 10.1007/978-3-322-90897-1_6
Colin Boyd, Some applications of multiple key ciphers theory and application of cryptographic techniques. pp. 455- 467 ,(1988) , 10.1007/3-540-45961-8_40
Günther Pernul, Christine Strauss, Loren M. Kohnfelder, Rolf Oppliger, Using Attribute Certificates to Implement Role-based Authorization and Access Controls ,(2000)
Rolf Oppliger, Internet and Intranet Security ,(1998)
Adi Shamir, How to share a secret Communications of the ACM. ,vol. 22, pp. 612- 613 ,(1979) , 10.1145/359168.359176
Loren M Kohnfelder, Towards a practical public-key cryptosystem. Massachusetts Institute of Technology. ,(1978)
R. Oppliger, Authorization methods for e-commerce applications symposium on reliable distributed systems. pp. 366- 371 ,(1999) , 10.1109/RELDIS.1999.805125
R.S. Sandhu, E.J. Coyne, H.L. Feinstein, C.E. Youman, Role-based access control models IEEE Computer. ,vol. 29, pp. 38- 47 ,(1996) , 10.1109/2.485845