中文
相关论文

相关论文: IVOA Recommendation: IVOA Credential Delegation Pr…

200 篇论文

This document presents brief software specification of a secure file exchange system prototype involving mutual authentication of the users via their browser and the application server with PKI-based certificates as credentials, the use of…

密码学与安全 · 计算机科学 2011-01-25 Serguei A. Mokhov , Marc-André Laverdière , Ali Benssam , Djamel Benredjem

This document describes the Data Access Layer Interface (DALI). DALI defines the base web service interface common to all Data Access Layer (DAL) services. This standard defines the behaviour of common resources, the meaning and use of…

天体物理仪器与方法 · 物理学 2019-05-22 Patrick Dowler , Markus Demleitner , Mark Taylor , Doug Tody

Credential brokers offer a way to separate identity from access in CI/CD systems. This paper shows how verifiable identities issued at runtime, such as those from SPIFFE, can be used with brokers to enable short-lived, policy-driven…

密码学与安全 · 计算机科学 2025-04-22 Surya Teja Avirneni

This paper analyses the various authentication systems implemented for enhanced security and private re-position of an individual's log-in credentials. The first part of the paper describes the multi-factor authentication (MFA) systems,…

密码学与安全 · 计算机科学 2015-02-04 Tuhin Borgohain , Amardeep Borgohain , Uday Kumar , Sugata Sanyal

Collaborative virtual environments (CVEs) are used for collaboration and interaction of possibly many participants that may be spread over large distances. Both commercial and freely available CVEs exist today. Currently, CVEs are used…

软件工程 · 计算机科学 2025-04-17 Luciano Argento , Angelo Furfaro

In key agreement protocols, the user will send a request to the server and the server will respond to that message. After two-way authentication, a secure session key will be created between them. They use the session key to create a secure…

密码学与安全 · 计算机科学 2022-06-28 Mahdi Nikooghadam , Hamid Reza Shahriari

Under conventional 5G system design, the authentication and continuous monitoring of user equipment (UE) demands a reliable backhaul connection between the radio access network (RAN) and the core network functions (AMF, AUSF, UDM, etc.).…

网络与互联网体系结构 · 计算机科学 2024-08-16 Lucas Vancina , Geoffrey Xie

Protocol specifications often identify the roles involved in communications. In multiparty protocols that involve task delegation it is often useful to consider settings in which different sites may act on behalf of a single role. It is…

计算机科学中的逻辑 · 计算机科学 2014-08-27 Silvia Ghilezan , Svetlana Jakšić , Jovanka Pantović , Jorge A. Pérez , Hugo Torres Vieira

An essential capability of the Virtual Observatory is a means for describing what data and computational facilities are available where, and once identified, how to use them. The data themselves have associated metadata (e.g., FITS…

天体物理仪器与方法 · 物理学 2019-05-22 Robert Hanisch , the IVOA Resource Registry Working Group , the NVO Metadata Working Group

Multi-tenant computing platforms are typically comprised of several software and hardware components including platform firmware, host operating system kernel, virtualization monitor, and the actual tenant payloads that run on them…

密码学与安全 · 计算机科学 2023-04-14 Ravi Sahita , Atish Patra , Vedvyas Shanbhogue , Samuel Ortiz , Andrew Bresticker , Dylan Reid , Atul Khare , Rajnesh Kanwal

OAuth 2.0 is a framework for authorization. Being a framework, OAuth 2.0 allows extensions to build on top of it. OpenID Connect is one such extension which adds authentication layer using identity details. OAuth 2.0 define several roles…

密码学与安全 · 计算机科学 2018-11-26 Kavindu Dodanduwa , Ishara Kaluthanthri

Self sovereign identity is a form of decentralised credential management. During credential verification, data exchange only happens between the data owner and the verifier without passing through any third parties. While this approach…

密码学与安全 · 计算机科学 2022-08-10 Kai Jun Eer , Jesus Diaz , Markulf Kohlweiss

Security requirements in distributed software systems are inherently dynamic. In the case of authorization policies, resources are meant to be accessed only by authorized parties, but the authorization to access a resource may be…

计算机科学中的逻辑 · 计算机科学 2016-02-12 Silvia Ghilezan , Svetlana Jakšić , Jovanka Pantović , Jorge A. Pérez , Hugo Torres Vieira

Registration and management of users in a large scale Grid computing environment presents new challenges that are not well addressed by existing protocols. Within a single Virtual Organization (VO), thousands of users will potentially need…

分布式、并行与集群计算 · 计算机科学 2007-05-23 Richard Baker , Dantong Yu , Tomasz Wlodek

We give a protocol for the delegation of quantum computation on encrypted data. More specifically, we show that in a client-server scenario, where the client holds the encryption key for an encrypted quantum register held by the server, it…

量子物理 · 物理学 2015-09-15 Anne Broadbent

Delegation of cryptographic signing rights has found many application in the literature and the real world. However, despite very advanced functionalities and specific use cases, existing solutions share the natural limitation that the…

密码学与安全 · 计算机科学 2022-10-07 Stephan Krenn , Thomas Lorünser

As AI systems enter institutional workflows, workers must decide whether to delegate task execution to AI and how much effort to invest in verifying AI outputs, while institutions evaluate workers using outcome-based standards that may…

计算机科学与博弈论 · 计算机科学 2026-03-04 Lingxiao Huang , Wenyang Xiao , Nisheeth K. Vishnoi

In ownership-based access control frameworks with the possibility of delegating permissions and administrative rights, chains of delegated accesses will form. There are different ways to treat these delegation chains when revoking rights,…

计算机科学中的逻辑 · 计算机科学 2014-05-08 Marcos Cramer , Pieter Van Hertum , Diego Agustin Ambrossio , Marc Denecker

Permissioned ledger systems allow a consortium of members that do not trust one another to execute transactions safely on a set of replicas. Such systems typically use Byzantine fault tolerance (BFT) protocols to distribute trust, which…

OpenID Connect (OIDC) is a widely used authentication standard for the Web. In this work, we define a new Identity Certification Token (ICT) for OIDC. An ICT can be thought of as a JSON-based, short-lived user certificate for end-to-end…

密码学与安全 · 计算机科学 2024-06-13 Jonas Primbs , Michael Menth