Skip to main content
Back to USENIX
  • Conferences
  • Students
Sign in

USENIX Conference Policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

Exu - A System for Secure Delegation of Authority on an Insecure Network

Karl Ramm, Massachusetts Institute of Technology, and Michael Grubb, Duke University

Administration of a large and complex system poses several problems: Usually, some tasks must be delegated due to lack of qualified or trusted staff, and some tasks must be automated. In many cases, some parts of the task might need special credentials, such as Kerberos tickets or AFS tokens, that may not necessarily be easily available to the person executing the task. The problem is that most systems divide users into two groups: haves and have nots, and provide no mechanism for finer-grained access control. In addition, the tasks executed must be carefully recorded for possible later auditing. Earlier solutions, such as the setuid bit, Moira, ADM, and sysctl, can be used to accomplish this, either in a limited or dangerous (in the case of setuid) fashion. Exu proposes to solve the problem via secure, authenticated connection to a server with full authentication that can cause things to happen in real time.

Karl Ramm, Massachusetts Institute of Technology

Michael Grubb, Duke University

BibTeX
@inproceedings {260430,
author = {Karl Ramm and Michael Grubb},
title = {Exu - A System for Secure Delegation of Authority on an Insecure Network},
booktitle = {9th System Administration Conference (LISA 95)},
year = {1995},
address = {Monterey, CA},
url = {https://www.usenix.org/conference/lisa-95/exu-system-secure-delegation-authority-insecure-network},
publisher = {USENIX Association},
month = sep
}
Download

Links

Paper: 
http://usenix.org/publications/library/proceedings/lisa95/full_papers/ramm.pdf
  • Log in or register to post comments

© USENIX
EIN 13-3055038

LISA is a registered trademark of the USENIX Association.

  • Privacy Policy
  • Contact Us