Access control in an open distributed environment

Abstract
We describe an architecture for secure, independent,interworking services (Oasis). Each service ismade responsible for the classification of its clientsinto named roles, using a formal logic to specifyprecise conditions for entering each role. A clientbecomes authenticated by presenting credentials toa service that enable the service to prove that theclient conforms to its policy for entry to a particularrole. During authentication a data structure iscreated that embodies the proof....

This publication has 7 references indexed in Scilit: