Re: Split Capabilities: Making Capabilities Scale Bill Frantz (frantz@communities.com)
Thu, 13 Jul 2000 15:30:04 -0700

At 09:11 PM 7/12/00 -0700, Norman Hardy wrote:
>At 14:43 -0400 00/07/12, Jonathan S. Shapiro wrote:
>...
>>The costs I was thinking about were not storage costs, but encryption time
>>when fabricating the key. Is fabrication time really low enough that
>>capabilities can be created willy nilly in E?
>>
>>Perhaps I should be asking: is the excessive capability creation time in
>>SPKI a problem confined to SPKI?
>>
>>
>I realize that I don't understand how SPKI fits into the E scheme.
>I thought that public key crypto was per pair of communicating vats, and not
>per object therein.
>Norman Hardy <http://www.mediacity.com/~norm>

Indeed, the only place the E runtime uses public key operations is when two vats are authenticating themselves to each other and setting up session keys for authentication and privacy.

The capabilities passed over the wire are represented by much less expensive techniques.