首页> 外文期刊>Computer Communications >Design and implementation of a public key-based group collaboration system
【24h】

Design and implementation of a public key-based group collaboration system

机译:基于公钥的团队协作系统的设计与实现

获取原文
获取原文并翻译 | 示例

摘要

We present PubKey-Wiki, a public key-based wiki group collaboration system. PubKey-Wiki allows users to authenticate themselves using public-key cryptography and gain authorizations using digital certificates. By using public key-based user authentication, users' passwords are not sent across the network and are not stored on the web server's host machine. Using digital certificates to authorize users to access protected files facilitates delegation of authority and simpler access control list (ACL) management, and allows the ability of a user to pass authorizations onto other users without needing to connect to the wiki's server. The paper introduces a new approach to revocation in which revocation of certificates and revocation of public keys are handled separately and take effect immediately. The paper also introduces an algorithm, CertClosure, that computes the transitive closure of a set of certificates that contain authorization information. When a user adds or removes a certificate from his certificate directory in PubKey-Wiki, PubKey-Wiki uses the CertClosure algorithm to derive authorization rules. PubKey-Wiki stores these authorization rules in a lookup table where they can be easily referenced. When a user tries to access a protected file, PubKey-Wiki looks up and uses the relevant authorization rules to efficiently make an access control decision.
机译:我们介绍PubKey-Wiki,这是一个基于公共密钥的Wiki组协作系统。 PubKey-Wiki允许用户使用公钥加密对自己进行身份验证,并使用数字证书获得授权。通过使用基于公共密钥的用户身份验证,用户的密码不会通过网络发送,也不会存储在Web服务器的主机上。使用数字证书授权用户访问受保护的文件有助于授权和简化访问控制列表(ACL)管理,并允许用户无需连接Wiki服务器即可将授权传递给其他用户。本文介绍了一种新的撤消方法,其中证书的撤消和公钥的撤消分别处理并立即生效。本文还介绍了一种算法CertClosure,该算法计算包含授权信息的一组证书的可传递性关闭。当用户在PubKey-Wiki中从其证书目录中添加或删除证书时,PubKey-Wiki使用CertClosure算法导出授权规则。 PubKey-Wiki将这些授权规则存储在查找表中,可以在其中轻松引用它们。当用户尝试访问受保护的文件时,PubKey-Wiki会查找并使用相关的授权规则来有效地做出访问控制决策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号