[cap-talk] mailkey: Is this broken ?? Identity key access?

Karp, Alan H alan.karp at hp.com
Mon Jun 4 19:51:08 EDT 2007


David Hopwood wrote:
> 
> This problem is easily solved: just consider instances of
> applications to be principals, as well as users. Then a typical
> delegation chain (e.g. appearing in a log) will look like
> "Alice -> app1 -> Bob -> app2", where Alice used her "app1"
> to delegate to Bob, and Bob used his "app2" to access the
> delegated object.
> 
But Carol has to know about each such account before the application can
use her objects.

________________________
Alan Karp
Principal Scientist
Virus Safe Computing Initiative
Hewlett-Packard Laboratories
1501 Page Mill Road
Palo Alto, CA 94304
(650) 857-3967, fax (650) 857-7029
https://ecardfile.com/id/Alan_Karp
http://www.hpl.hp.com/personal/Alan_Karp
  
 



More information about the cap-talk mailing list