The search functionality is under construction.

IEICE TRANSACTIONS on Information

The Design and Implementation of an Authentication System for the Wide Area Distributed Environment

Suguru YAMAGUCHI, Kiyohiko OKAYAMA, Hideo MIYAHARA

  • Full Text Views

    0

  • Cite this

Summary :

In a large scale distributed environment or large open networks like WIDE Internet which is an academic and reserch network in Japan, the authentication system is the fundamental building block for providing security mechanisms. We have developed a trusted third-party authentication system called SPLICE|AS for the WIDE Interet. The authetication protocol adopted in SPLICE|AS is based on the public-key encryptosystem, originally proposed by Needham. We made several extensions to detct some sort of security attacks like replay attacks which were not considered in the original Needham's approach. Furthermore, the domain-based management scheme and protocol extensions are introduced to our system since management principals are scatterd across the WIDE Internet. The whole network is logically subdivided into several domains based on network management policies, and each domain is managed by a single authentication server. Then, the domain concept is applied in a hierarchical manner to provide the inter-domain access. An authentication server existing in an upper domain authorizes and controls inter-domain accesses between subdomains. This paper describes the design of SPLICE|AS, and its implementatins.

Publication
IEICE TRANSACTIONS on Information Vol.E74-D No.11 pp.3902-3909
Publication Date
1991/11/25
Publicized
Online ISSN
DOI
Type of Manuscript
PAPER
Category
Computer Networks

Authors

Keyword