AUTHENTICATION AND DELEGATION WITH SMART-CARDS

被引:29
作者
ABADI, M
BURROWS, M
KAUFMAN, C
LAMPSON, B
机构
[1] DIGITAL EQUIPMENT CORP, SYST RES CTR, PALO ALTO, CA 94301 USA
[2] DIGITAL EQUIPMENT CORP, TELECOMMUN & NETWORKS, LITTLETON, MA 01460 USA
关键词
D O I
10.1016/0167-6423(93)90002-7
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The authentication of users in distributed systems poses special problems because users lack the ability to encrypt and decrypt. The same problems arise when users wish to delegate some of their authority to nodes, after mutual authentication. In most systems today, the user is forced to trust the node he wants to use. In a more satisfactory design, the user carries a smart-card with sufficient computing power to assist him; the card provides encryption and decryption capabilities for authentication and delegation. Authentication is relatively straightforward with a powerful enough smart-card. However, for practical reasons, protocols that place few demands on smart-cards should be considered. These protocols are subtle, as they rely on fairly complex trust relations between the principals in the system (users, hosts, services). In this paper, we discuss a range of public-key smart-card protocols, and analyze their assumptions and the guarantees they offer.
引用
收藏
页码:93 / 113
页数:21
相关论文
共 17 条
[1]  
Abadi M., 1991, Proceedings of the Tenth Annual ACM Symposium on Principles of Distributed Computing, P201, DOI 10.1145/112600.112618
[2]  
ABADI M, 1991, LECTURES NOTES COMPU
[3]  
ABADI M, 1991, SRC70 DIG EQ CORP SY
[4]  
BURROWS M, 1990, ACM T COMPUT SYST, V8, P18, DOI [10.1145/77648.77649, 10.1145/74851.74852]
[5]  
BURROWS M, 1989, 39 DIG EQ CORP SYST
[6]  
CHAUM D, 1989, SMART CARD 2000
[7]   NEW DIRECTIONS IN CRYPTOGRAPHY [J].
DIFFIE, W ;
HELLMAN, ME .
IEEE TRANSACTIONS ON INFORMATION THEORY, 1976, 22 (06) :644-654
[8]  
FEIGE U, 1987, 19TH P ANN ACM S THE, P210
[9]  
Gasser M., 1990, Proceedings. 1990 IEEE Computer Society Symposium on Research in Security and Privacy (Cat. No.90CH2884-5), P20, DOI 10.1109/RISP.1990.63835
[10]  
GASSER M, 1989, 12TH P NAT COMP SEC, P305