A Proof-of-Compliance Mechanism of SPKI/SDSI2.0 Using Constraint

He Yongzhong · Journal of Beijing Jiaotong University · 2008

SPKI/SDSI2.0 is the most popular trust management system at present.But in SPKI/SDSI2.0,as long as a principal provides a valid certificate chain to the server,it may be authorized letting the resource owner's will alone,so the security property of the system can't be maintained.In this paper,we present a proof-of-compliance mechanism of SPKI/SDSI2.0 using constraint in order to enhance the degree of control over the resource for the owner.This mechanism,which is simple and flexible and easy to implement,can largely improve the security property of the distributed access control.

Read the paper · More papers on PaperTik