Re: Question about PKI and Trust model

From: Andrew Swallow (am.swallow_at_eatspam.btinternet.com)
Date: 07/31/04


Date: Sat, 31 Jul 2004 05:59:08 +0000 (UTC)


"ohaya" <ohaya@cox.net> wrote in message news:410AB64A.3E62F5@cox.net...
>
[snip]
> The "pro" is that if we could accomplish this (use PKI to enforce access
> control), our systems and applications would not need to be so
> "PKI-aware".

You may be able to use PKI as part of your login process. As
a form of identification for instance.

You could limit the granting and updating of access rights to
specified users/managers. PKI to identify them, include time
and date to prevent replays with digital signatures to prevent
modification/forgeing of control messages.

> Again, thanks for your comment.

No problem.

Andrew Swallow



Relevant Pages

  • Re: public key vs passwd authentication?
    ... PKI secures machines accessing other ... >> secret key models. ... The latter case has a password as a shared secret for the access control ... > the end-points be subject to risk management decisions). ...
    (comp.security.ssh)
  • Re: Question about PKI and Trust model
    ... Andrew Swallow wrote: ... >> into and enforced by the PKI infrastructure mechanism, ... FYI, in our case, we have "full" control of the sub-root CA, but not of ... Aside the generic problems that tying authentication and access control ...
    (sci.crypt)
  • Re: Its open season on crooks down here in Texas
    ... are most likely wrong about them being total frauds. ... not have obvious applications does not mean it is useless. ... good mathematician, and his work is quite accessible to the non- ... control, there is no conspiracy. ...
    (alt.politics)
  • Re: fork and pointers
    ... control) single-threaded applications don't need to. ... than multiple cooperating single threaded applications. ... specific file with the datagram socket connected to its standard input ...
    (comp.unix.programmer)
  • Re: Its open season on crooks down here in Texas
    ... are most likely wrong about them being total frauds. ... not have obvious applications does not mean it is useless. ... good mathematician, and his work is quite accessible to the non- ... control, there is no conspiracy. ...
    (alt.politics)