Publication | Closed Access
User authentication and authorization in the Java/sup TM/ platform
78
Citations
12
References
2003
Year
Unknown Venue
Authentication AuthorizationEngineeringInformation SecurityAuthorizationSoftware AnalysisFormal VerificationAuthentication Access ControlPublic NetworkAuthentication ProtocolAccess Control CapabilitiesJava PlatformOperating System SecurityAuthenticationData PrivacySecure By DesignComputer ScienceData SecurityCryptographySoftware SecurityProgram AnalysisUser AuthenticationSystem Software
Java/sup TM/ security technology originally focused on creating a safe environment in which to run potentially untrusted code downloaded from the public network. With the latest release of the Java/sup TM/ platform (the Java/sup TM/ 2 Software Development Kit, v 1.2), fine-grained access controls can be placed upon critical resources with regard to the identity of the running applets and applications, which are distinguished by where the code came from and who signed it. However, the Java platform still lacks the means to enforce access controls based on the identity of the user who runs the code. In this paper we describe the design and implementation of the Java/sup TM/ Authentication and Authorization Service (JAAS), a framework and programming interface that augments the Java/sup TM/ platform with both user-based authentication and access control capabilities.
| Year | Citations | |
|---|---|---|
Page 1
Page 1