Cascaded authentication

  • Authors:
  • Karen R. Sollins

  • Affiliations:
  • Massachusetts Institute of Technology, Laboratory for Computer Science, Cambridge, MA

  • Venue:
  • SP'88 Proceedings of the 1988 IEEE conference on Security and privacy
  • Year:
  • 1988

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper addresses a problem that has arisen in building distributed systems in which incomplete tmst exists and program composition is necessary. The problem is to permit authentication for both access control and accounting when cascading invocations. The problem can be identified as one of providing cascaded authentication. We have developed a mechanism we call passports that are passed along with each stage of the cascade and digitally signed at each transition. The information thus signed is that which is critical to the authentication. The contributions of the work are both in recognizing the problem and in devising a solution that is efficient enough to be usable, although there will be some cost associated with such a mechanism.