ACM Home Page
Please provide us with feedback. Feedback
Authentication in the Taos operating system
Full text PdfPdf (1.88 MB)
Source ACM Transactions on Computer Systems (TOCS) archive
Volume 12 ,  Issue 1  (February 1994) table of contents
Special issue on operating systems principles
Pages: 3 - 32  
Year of Publication: 1994
ISSN:0734-2071
Authors
Edward Wobber  Digital Equipment Corp., Palo Alto, CA
Martín Abadi  Digital Equipment Corp., Palo Alto, CA
Michael Burrows  Digital Equipment Corp., Palo Alto, CA
Butler Lampson  Digital Equipment Corp., Palo Alto, CA
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 13,   Downloads (12 Months): 86,   Citation Count: 32
Additional Information:

abstract   references   cited by   index terms   review   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/174613.174614
What is a DOI?

ABSTRACT

We describe a design for security in a distributed system and its implementation. In our design, applications gain access to security services through a narrow interface. This interface provides a notion of identity that includes simple principals, groups, roles, and delegations. A new operating system component manages principals, credentials, and secure channels. It checks credentials according to the formal rules of a logic of authentication. Our implementation is efficient enough to support a substantial user community.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
2
 
3
BIRRELL, A., HISGEN, A., JERIAN, C., MANN, T., AND SWART, G. 1993. The Echo distributed file system. Rep. 111, Systems Research Center, Digital Equipment Corp., Palo Alto, Calif.
 
4
CCITT. 1988. Information processing systems Open systems interconnection--The directory authentication framework. CCITT 1988 Recommendation X.509, Geneva, Switzerland.
 
5
EBERLE, a. AND THACKER, C. 1992. A 1 Gbit/seeond GaAs DES chip. In Proceedings of the IEEE Custom Integrated Circuit Conference. IEEE, New York, 19.7.1 19.7.4.
 
6
GASSER, M., GOLDSTEIN, A., KAUFMAN, C., ~D LAMPSON, B. 1989. The Digital distributed system security architecture., In Proceedings of the 12th National Computer Security Conference. NIST/NCSC, 305 319.
 
7
HERBISON, B. 1990. Low cost outboard cryptographic support for SILS and SP4. In Proceed~ ings of the 13th National Computer Security Conference. NIST/NCSC, 286-295.
 
8
9
10
 
11
NATIONAL BUREAU OF STANDARDS. 1977. Data Encryption Standard. FIPS Pub. 46, Washington, D.C.
 
12
 
13
 
14
QUISQUATER, J.-J., DE WALEFFE, D., AND BOURNAS, J.-P. 1991. Corsair: A chip card with fast RSA capability, tn Smart Card 2000. Elsevier, New York, 199 206.
 
15
16
17
 
18
SHAND, M., AND VUILLEMIN, J 1993. Fast implementations of RSA cryptography In the 11 Symposium on Computer Amthmetzc. IEEE Computer Socmty, Washington, D C
 
19
STEINER, J., NEUMAN, C., AND SCHILLER, J. 1988. Kerberos: An authentication servme for open network systems. In Proceedings of the USNIX Winter Conference (1988). USNIX Association, Berkeley, Calif., 191 202.
 
20

CITED BY  32


REVIEW

"Jonathan K. Millen : Reviewer"

In a 1992 paper in the same journal [1], a permutation of these authors introduced the concepts applied in this paper. The problem addressed in both papers is discretionary, or identity-based, access control in a distributed system  more...

Collaborative Colleagues:
Edward Wobber: colleagues
Martín Abadi: colleagues
Michael Burrows: colleagues
Butler Lampson: colleagues