If sensitive information is to be included in a shared web, access controls will be required. However, the complex software needed to provide a web service is prone to failure. To provide access control without relying on such software, encryption can be used. Bob is a prototype system that supports complex access control expressions through the transparent use of encryption.
Index Terms:
access control, web, encryption
Citation:
Tim Wilkinson, Dave Hearn, Simon Wiseman, "Trustworthy Access Control with Untrustworthy Web Servers," acsac, pp.12, 15th Annual Computer Security Applications Conference (ACSAC '99), 1999