Authentication and access delegation with user-released certificates

  • Authors:
  • Lavinia Egidi;Maurizio Melato

  • Affiliations:
  • Univ. del Piemonte Orientale, Spalto Marengo 33, 15100 Alessandria, Italy;NICE srl, Via Serra, Camerano Casasco, Asti, Italy

  • Venue:
  • Proceedings of the 2003 ACM symposium on Applied computing
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

We propose an authentication and access delegation system based on an unconventional use of X.509 certificates. It allows users to connect from any untrusted machine and to define dynamically a group of trusted co-workers. It is low cost, doesn't need unusual software nor hardware on the client's side, and offers a good degree of security without requiring that the user be too careful. The underlying idea is to enable users to release their own certificates with very short life span (or usable just once) to authenticate themselves to the server.