Review and Revocation of Access Privileges Distributed with PKI Certificates

  • Authors:
  • Himanshu Khurana;Virgil D. Gligor

  • Affiliations:
  • -;-

  • Venue:
  • Revised Papers from the 8th International Workshop on Security Protocols
  • Year:
  • 2000

Quantified Score

Hi-index 0.00

Visualization

Abstract

Public-key infrastructures (PKIs) that support both identity certificates and access control (e.g., attribute, delegation) certificates are increasingly common. We argue that these PKIs must a lso support revocation and review policies that are typical of more traditional access control systems; e.g., selective and transitive certificate revocation, and per-object access review. Further, we show that PKIs that eliminate identity certificates, such as the SPKI, resolve only selective revo cation problems and, at the same time, make access review more complex.