A Capability-based System to Enforce Context-aware Permission Sequence

dc.contributor.advisorSafavi-Naini, Reihaneh S.
dc.contributor.authorLi, Shuai
dc.contributor.committeememberFong, Philip W. L.
dc.contributor.committeememberReardon, Joel
dc.date2020-06
dc.date.accessioned2020-02-03T18:50:13Z
dc.date.available2020-02-03T18:50:13Z
dc.date.issued2020-01-31
dc.description.abstractWith the rise of the Internet of Things, the need for distributed authorization is fast growing. We consider a capability-based distributed authorization system where a client obtains access tokens (capabilities) from an authorization server and by presenting them to a resource server, obtains access. We propose a capability system that provides efficient and refined (conditional) access to resources. It supports “ordered permission” and “context”, and so allows a sequence of permissions to be enforced, each with their own specific context. We prove the safety property of this system for these conditions, show how it can be incorporated in the OAuth framework, and give an implementation of the system - Griffin that uses OAuth 2.0 with proof-of-possession token and attribute-based access control model.en_US
dc.identifier.citationLi, S. (2020). A Capability-based System to Enforce Context-aware Permission Sequence (Master's thesis, University of Calgary, Calgary, Canada). Retrieved from https://prism.ucalgary.ca.en_US
dc.identifier.doihttp://dx.doi.org/10.11575/PRISM/37549
dc.identifier.urihttp://hdl.handle.net/1880/111611
dc.publisher.facultyScienceen_US
dc.publisher.institutionUniversity of Calgaryen
dc.rightsUniversity of Calgary graduate students retain copyright ownership and moral rights for their thesis. You may use this material in any way that is permitted by the Copyright Act or through licensing that has been assigned to the document. For uses that are not allowable under copyright legislation or licensing, you are required to seek permission.en_US
dc.subjectSecurity and Privacyen_US
dc.subjectDistributed Authorizationen_US
dc.subjectInternet of Thingsen_US
dc.subjectAccess Controlen_US
dc.subjectSecurity Protocolsen_US
dc.subject.classificationComputer Scienceen_US
dc.titleA Capability-based System to Enforce Context-aware Permission Sequenceen_US
dc.typemaster thesisen_US
thesis.degree.disciplineComputer Scienceen_US
thesis.degree.grantorUniversity of Calgaryen_US
thesis.degree.nameMaster of Science (MSc)en_US
ucalgary.item.requestcopytrueen_US
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
ucalgary_2020_li_shuai.pdf
Size:
975.51 KB
Format:
Adobe Portable Document Format
Description:
License bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
2.62 KB
Format:
Item-specific license agreed upon to submission
Description: