21st International Conference on Advanced Information Networking and Applications Workshops (AINAW'07) A Decentralized Authorization Architecture Niagara Falls, Ontario, Canada May 21-May 23 ISBN: 0-7695-2847-3
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/AINAW.2007.18
We present a decentralized authorization architecture based on capabilities in which parties are able to exercise full control over their resources and delegate it in an ad-hoc manner. In our architecture data objects are encrypted and capabilities are used to gain access to them directly. Data storage can then be decoupled from access to the stored data. Capabilities are also protected by encryption, so that they can be distributed to principals not authorized to use them. Replication and distribution can therefore be used to increase the availability not only of the data objects but of the authorization architecture itself to cope with disconnections and, in general, to adapt to changes of network topology typical of loosely coupled systems such as peer-to-peer networks and collaborative systems.
Citation:
Feike W. Dillema, Simone Lupetti, Tage Stabell-Kulo, "A Decentralized Authorization Architecture," ainaw, vol. 1, pp.497-504, 21st International Conference on Advanced Information Networking and Applications Workshops (AINAW'07), 2007 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||