Independently verifiable decentralized role-based delegation

  • Authors:
  • Roberto Tamassia;Danfeng Yao;William H. Winsborough

  • Affiliations:
  • Department of Computer Science, Brown University, Providence, RI;Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, VA;Department of Computer Science, University of Texas at San Antonio, San Antonio, TX

  • Venue:
  • IEEE Transactions on Systems, Man, and Cybernetics, Part A: Systems and Humans
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

In open systems such as cloud computing platforms, delegation transfers privileges among users across different administrative domains and facilitates information sharing. We present an independently verifiable delegation mechanism, where a delegation credential can be verified without the participation of domain administrators. Our protocol, called role-based cascaded delegation (RBCD), supports simple and efficient cross-domain delegation of authority. RBCD enables a role member to create delegations based on the dynamic needs of collaboration; in the meantime, a delegation chain can be verified by anyone without the participation of role administrators. We also describe an efficient realization of RBCD by using aggregate signatures, where the authentication information for an arbitrarily long role-based delegation chain is captured by one short signature of constant size.