CERIAS Tech Report 2004-03 RTML: A ROLE-BASED TRUST-MANAGEMENT MARKUP LANGUAGE

نویسندگان

  • Ninghui Li
  • John C. Mitchell
  • William H. Winsborough
  • Kent E. Seamons
  • Michael Halcrow
  • Jared Jacobson
چکیده

RT is a framework for Role-based Trust Management [20]. In comparison with systems like SPKI/SDSI and KeyNote, the advantages of RT include: a declarative, logic-based semantic foundation, support for vocabulary agreement, strongly-typed credentials and policies, more flexible delegation structures, and more expressive support for Separation-of-Duty policies. This paper describes advances in the RT framework that broaden its applicability and presents RTML, an XMLbased data representation for RT policies and credentials. Improvements in RT include new data types to encode permissions involving structured resources and ranges, restrictive inheritance of roles for flexible refinement of permissions, and notions of identity roles and identity-based roles for enforcing separation-of-duty when a physical user holds multiple keys. RTML establishes a precise format for RT credentials and policies, facilitating deployment of the RT framework.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

RTML: A Role-based Trust-management Markup Language

RT is a framework for Role-based Trust Management [20]. In comparison with systems like SPKI/SDSI and KeyNote, the advantages of RT include: a declarative, logic-based semantic foundation, support for vocabulary agreement, strongly-typed credentials and policies, more flexible delegation structures, and more expressive support for Separation-of-Duty policies. This paper describes advances in th...

متن کامل

CERIAS Tech Report 2004-18 E-NOTEBOOK MIDDLEWARE FOR ACCOUNTABILITY AND REPUTATION BASED TRUST IN DISTRIBUTED DATA SHARING COMMUNITIES

This paper presents the design of a new middleware which provides support for trust and accountability in distributed data sharing communities. One application is in the context of scientific collaborations. Multiple researchers share individually collected data, who in turn create new data sets by performing transformations on existing shared data sets. In data sharing communities building tru...

متن کامل

CERIAS Tech Report 2003-23 A GENERALIZED TEMPORAL ROLE BASED ACCESS MODEL FOR DEVELOPING SECURE SYSTEMS

................................................................................................................. xiii

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2004