Revocation Schemes for Delegated Authorities

  • Authors:
  • B. Firozabadi;M. Sergot

  • Affiliations:
  • -;-

  • Venue:
  • POLICY '02 Proceedings of the 3rd International Workshop on Policies for Distributed Systems and Networks (POLICY'02)
  • Year:
  • 2002

Quantified Score

Hi-index 0.00

Visualization

Abstract

We have an existing framework for updating privileges and creating management structures by means of authority certificates. These areused both to create access-level permissions and to delegate authority to other agents. Here we extend the framework to support a richerset of evocation schemes. The discussion of evocation follows an existing classification in the literature based on three separate dimensions:resilience, propagation, and dominance. The first does not apply to this framework. The second is specified straightforwardly. The third canbe encoded but raises a number of further questions for future investigation.