Skip to main content

Consumable Credentials in Logic-Based Access-Control Systems

Publication ,  Conference
Bowers, KD; Bauer, L; Garg, D; Pfenning, F; Reiter, MK
Published in: Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007
January 1, 2007

We present a method to implement consumable credentials in a logic-based distributed authorization system. Such credentials convey use-limited authority (e.g., to open a door once) or authority to utilize resources that are themselves limited (e.g., concert tickets). We design and implement mechanisms to enforce the consumption of credentials in a distributed system, and to protect credentials from nonproductive consumption as might result from misbehavior or failure. We explain how these mechanisms can be used to support a distributed authorization system that uses a linear access-control logic. Finally, we give several usage examples in the framework, and evaluate the performance of our implementation for use in a ubiquitous computing deployment at our institution.

Duke Scholars

Published In

Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007

Publication Date

January 1, 2007
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Bowers, K. D., Bauer, L., Garg, D., Pfenning, F., & Reiter, M. K. (2007). Consumable Credentials in Logic-Based Access-Control Systems. In Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007.
Bowers, K. D., L. Bauer, D. Garg, F. Pfenning, and M. K. Reiter. “Consumable Credentials in Logic-Based Access-Control Systems.” In Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007, 2007.
Bowers KD, Bauer L, Garg D, Pfenning F, Reiter MK. Consumable Credentials in Logic-Based Access-Control Systems. In: Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007. 2007.
Bowers, K. D., et al. “Consumable Credentials in Logic-Based Access-Control Systems.” Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007, 2007.
Bowers KD, Bauer L, Garg D, Pfenning F, Reiter MK. Consumable Credentials in Logic-Based Access-Control Systems. Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007. 2007.

Published In

Proceedings of the Symposium on Network and Distributed System Security, NDSS 2007

Publication Date

January 1, 2007