The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

An Extensible Framework for Authentication and Delegation


Theron Donald Tock

Entry type



We present the design of a framework for secure communication. This framework incorporates authentication and secret message passing without the restructuring of applications: through the use of inheritance, communication classes preserve interfaces while adding security. Each service determines the security measures it will use and the system ensures clients communicate using the correct protocol. We demonstrate extensibility by implementing delegation of authority without modifying the underlying framework. Our delegation protocol permits a disconnected delegator and efficiently supports very frequent delegation and revocation. We describe our implementation of this framework for Choices, an object oriented operating system.

Key alpha



University of Washington

Publication Date




BibTex-formatted data

To refer to this entry, you may select and copy the text below and paste it into your BibTex document. Note that the text may not contain all macros that BibTex supports.