Security Mechanism Independence in ONC RPC
Mike Eisler, SunSoft, Inc.
Roland J. Schemers III, Stanford University
Raj Srinivasan, ControlNet, Inc.
Abstract
Generic Security Services API (GSS-API) [4] provides a framework for
security services. It allows source level portability. It allows
applications to run independently of the underlying security
mechanisms and technologies.
To provide security mechanism independence in ONC RPC [1, 2, 3], this
paper proposes a new security flavor, RPCSEC_GSS. RPCSEC_GSS
incorporates services offered by the GSS-API into ONC RPC. Using the
programming interface for the RPCSEC_GSS flavor, ONC RPC applications
can specify a GSS-API security mechanism to be used with an RPC
session, and also request security services, such as integrity and
privacy.
View the full text of this paper in
HTML and
POSTSCRIPT (258,203 Bytes) form.
To Become a USENIX Member, please see our
Membership Information.
|