Third-Party Authentication in the Institutional File System

Bill Doster, Jim Rees · 1992

The use of intermediate translators in the Institutional File System presents the problem of authenticating the translator to the file server where the client's private key is not known to the translator. We have implemented a modification to the Kerberos authentication exchange that allows our translators to securely acquire the rights necessary for them to access files and other services on behalf of their clients. February 2, Center for Information Technology Integration 1 Third-Party Authentication in the Institutional File System Bill Doster [email protected] Jim Rees [email protected] Introduction The Institutional File System (IFS) [1] is a large, heterogeneous distributed file system developed at the Center for Information Technology Integration (CITI) and based on AFS [2]. Authentication in AFS between clients and servers is provided by the Kerberos Authentication System [3]. Eventually we expect to support tens of thousands of file system clients. While many of these c...

Read the paper · More papers on PaperTik