Skip to main content
Back to USENIX
  • Conferences
  • Students
Sign in

USENIX Conference Policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

Scalable Access Control for Distributed Object Systems

A key obstacle to the widespread use of distributed object oriented systems is the lack of scalable access control mechanisms. It is often necessary to control access to individual objects and methods. In large systems, however, these can be so numerous that the resulting proliferation of access control information becomes overwhelming. We describe Object Oriented Domain and Type Enforcement (OO-DTE), a technology for organizing, specifying, and enforcing access control that has been prototyped and integrated with commercial ORBs and SSL. OO-DTE provides fine-grained control and scalability via a compilable symbolic policy language. We discuss our experience building and using OO-DTE and compare OO-DTE with the access control terminology, concepts, and requirements described in CORBA Security.

Daniel F. Sterne, NAI Labs, Network Associates, Inc.

Gregg W. Tally, NAI Labs, Network Associates, Inc.

C. Durward McDonell, NAI Labs, Network Associates, Inc.

David L. Sherman, NAI Labs, Network Associates, Inc.

David L. Sames, NAI Labs, Network Associates, Inc.

Pierre X. Pasturel, NAI Labs, Network Associates, Inc.

E. John Sebes, Kroll-O'Gara Information Security Group

BibTeX
@inproceedings {271558,
author = {Daniel F. Sterne and Gregg W. Tally and C. Durward McDonell and David L. Sherman and David L. Sames and Pierre X. Pasturel and E. John Sebes},
title = {Scalable Access Control for Distributed Object Systems},
booktitle = {8th USENIX Security Symposium (USENIX Security 99)},
year = {1999},
address = {Washington, D.C.},
url = {https://www.usenix.org/conference/8th-usenix-security-symposium/scalable-access-control-distributed-object-systems},
publisher = {USENIX Association},
month = aug
}
Download

Links

Paper: 
http://www.usenix.org/events/sec99/full_papers/sterne/sterne.pdf
Paper (HTML): 
http://www.usenix.org/events/sec99/full_papers/sterne/sterne_html/index.html
  • Log in or register to post comments

© USENIX
EIN 13-3055038

  • Privacy Policy
  • Contact Us