loading...
A Distributed Certificate Management System (DCMS) Supporting Group-Based Access Controls
Phoenix, Arizona December 06-December 10
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/CSAC.1999.81603315th Annual Computer Security Applica ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Rolf Oppliger, Swiss Federal Strategy Unit for Information Technology FSUIT
Andreas Greulich, Swiss Federal Strategy Unit for Information Technology FSUIT
Peter Trachsel, Swiss Federal Strategy Unit for Information Technology FSUIT
Mainly for scalability reasons, many cryptographic security protocols make use of public key cryptography and require the existence of a corresponding public key infrastructure (PKI). A PKI, in turn, consists of one or several certification authorities (CAs) that issue and revoke certificates for users and other CAs. Contrary to its conceptual simplicity, the establishment and operational maintenance of a CA or PKI has turned out to be difficult in practice. As a viable alternative, this paper proposes an architecture for a distributed certificate management system (DCMS) that can also be used to provide support for group-based access controls. The architecture has been prototyped and is being used by the Swiss Federal Strategy Unit for Information Technology (FSUIT) to protect access to intranet resources.
Index Terms:
Public key cryptography, public key infrastructure (PKI), public key certificate, certification authority (CA)
Citation:
Rolf Oppliger, Andreas Greulich, Peter Trachsel, "A Distributed Certificate Management System (DCMS) Supporting Group-Based Access Controls," acsac, pp.241, 15th Annual Computer Security Applications Conference (ACSAC '99), 1999
Usage of this product signifies your acceptance of the Terms of Use.


Suggestions