Code-Carrying Authorization

European Symposium on Research in Computer Security(2008)

引用 33|浏览33
暂无评分
摘要
In authorization, there is often a wish to shift the burden of proof to those making requests, since they may have more resources and more specific knowledge to construct the required proofs. We introduce an extreme instance of this approach, which we call Code-Carrying Authorization (CCA). With CCA, access-control decisions can partly be delegated to untrusted code obtained at run-time. The dynamic verification of this code ensures the safety of authorization decisions. We define and study this approach in the setting of a higher-order spi calculus. The type system of this calculus provides the needed support for static and dynamic verification.
更多
查看译文
关键词
higher-order spi calculus,access-control decision,untrusted code,needed support,authorization decision,dynamic verification,required proof,specific knowledge,code-carrying authorization,type system,extreme instance,access control,higher order
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要