Abstract
We extend the logic and semantics of authorization due to Abadi, Lampson, et al. to support restricted delegation. Our formal model provides a simple interpretation for the variety of constructs in the Simple Public Key Infrastructure (SPKI), and lends intuition about possible extensions. We discuss both extensions that our semantics supports and extensions that it cautions against.
Chapter PDF
Similar content being viewed by others
Keywords
These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.
References
Ellison, C.M., Frantz, B., Lampson, B., Rivest, R., Thomas, B.M., Ylonen, T.: SPKI certificate theory, Internet RFC 2693 (October 1999)
Abadi, M., Burrows, M., Lampson, B., Plotkin, G.: A calculus for access control in distributed systems. ACM Transactions on Programming Languages and Systems 15(4), 706–734 (1993)
Lampson, B., Abadi, M., Burrows, M., Wobber, E.: Authentication in distributed systems: theory and practice. ACM Transactions on Computer Systems 10(4), 265–310 (1992)
Abadi, M.: On SDSI’s linked local name spaces. Journal of Computer Security 6(1-2), 3–21 (1998)
Halpern, J.Y., van der Meyden, R.: A logic for SDSI’s linked local name spaces. In: Proceedings of the 12th IEEE Computer Security Foundations Workshop, pp. 111–122 (1999)
Aura, T.: On the structure of delegation networks. In: Proceedings of the Eleventh IEEE Computer Security Foundations Workshop, pp. 14–26 (1998)
Hughes, G.E., Cresswell, M.J.: A New Introduction to Modal Logic. Routledge, New York (1996)
Fagin, R., Halpern, J.Y., Moses, Y., Vardi, M.Y.: Reasoning about Knowledge. MIT Press, Cambridge (1995)
Howell, J., Kotz, D.: A Formal Semantics for SPKI. Technical Report TR2000-363, Dartmouth College, Computer Science, Hanover, NH (March 2000), Available at http://www.cs.dartmouth.edu/reports/abstracts/TR2000-363/
Howell, J.R.: Naming and sharing resources across administrative boundaries. PhD thesis, Department of Computer Science, Dartmouth College (2000)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2000 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Howell, J., Kotz, D. (2000). A Formal Semantics for SPKI. In: Cuppens, F., Deswarte, Y., Gollmann, D., Waidner, M. (eds) Computer Security - ESORICS 2000. ESORICS 2000. Lecture Notes in Computer Science, vol 1895. Springer, Berlin, Heidelberg. https://doi.org/10.1007/10722599_9
Download citation
DOI: https://doi.org/10.1007/10722599_9
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-41031-7
Online ISBN: 978-3-540-45299-7
eBook Packages: Springer Book Archive