{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:39:32Z","timestamp":1750307972182,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":55,"publisher":"ACM","license":[{"start":{"date-parts":[[2007,10,28]],"date-time":"2007-10-28T00:00:00Z","timestamp":1193529600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2007,10,28]]},"DOI":"10.1145\/1315245.1315299","type":"proceedings-article","created":{"date-parts":[[2007,11,15]],"date-time":"2007-11-15T14:30:20Z","timestamp":1195137020000},"page":"432-444","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":13,"title":["Alpaca"],"prefix":"10.1145","author":[{"given":"Chris","family":"Lesniewski-Laas","sequence":"first","affiliation":[{"name":"MIT, Cambridge, MA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bryan","family":"Ford","sequence":"additional","affiliation":[{"name":"MIT, Cambridge, MA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jacob","family":"Strauss","sequence":"additional","affiliation":[{"name":"MIT, Cambridge, MA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Robert","family":"Morris","sequence":"additional","affiliation":[{"name":"MIT, Cambridge, MA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"M. Frans","family":"Kaashoek","sequence":"additional","affiliation":[{"name":"MIT, Cambridge, MA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2007,10,28]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.5555\/788023.789068"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.entcs.2007.02.002"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/155183.155225"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/168619.168640"},{"key":"e_1_3_2_1_5_1","unstructured":"Akamai. http:\/\/www.akamai.com.  Akamai. http:\/\/www.akamai.com."},{"key":"e_1_3_2_1_6_1","unstructured":"Amazon Elastic Compute Cloud. http:\/\/aws.amazon.com\/ec2.  Amazon Elastic Compute Cloud. http:\/\/aws.amazon.com\/ec2."},{"key":"e_1_3_2_1_7_1","unstructured":"Amazon Simple Storage Service. http:\/\/aws.amazon.com\/s3.  Amazon Simple Storage Service. http:\/\/aws.amazon.com\/s3."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/319709.319718"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2005.9"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/647253.757044"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1007\/11496137_13"},{"key":"e_1_3_2_1_14_1","volume-title":"Active certificates: A framework for delegation","author":"Borisov N.","year":"2002","unstructured":"N. Borisov and E. A. Brewer . Active certificates: A framework for delegation . In NDSS. The Internet Society , 2002 . N. Borisov and E. A. Brewer. Active certificates: A framework for delegation. In NDSS. The Internet Society, 2002."},{"key":"e_1_3_2_1_15_1","first-page":"143","volume-title":"Network and Distributed System Security Symposium","author":"Bowers K. D.","year":"2007","unstructured":"K. D. Bowers , L. Bauer , D. Garg , F. Pfenning , and M. K. Reiter . Consumable credentials in linear-logic-based access-control systems . In Network and Distributed System Security Symposium , pages 143 -- 157 , Feb. 2007 . K. D. Bowers, L. Bauer, D. Garg, F. Pfenning, and M. K. Reiter. Consumable credentials in linear-logic-based access-control systems. In Network and Distributed System Security Symposium, pages 143--157, Feb. 2007."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/74850.74852"},{"key":"e_1_3_2_1_17_1","volume-title":"Nov.","author":"Callas J.","year":"1998","unstructured":"J. Callas , L. Donnerhacke , H. Finney , and R. Thayer . OpenPGP message format. RFC 2440 (Proposed Standard) , Nov. 1998 . J. Callas, L. Donnerhacke, H. Finney, and R. Thayer. OpenPGP message format. RFC 2440 (Proposed Standard), Nov. 1998."},{"key":"e_1_3_2_1_18_1","volume-title":"Evan Heyst. Group Signatures. In EUROCRYPT '91","author":"Chaum D.","year":"1991","unstructured":"D. Chaum and Evan Heyst. Group Signatures. In EUROCRYPT '91 , 1991 . D. Chaum and Evan Heyst. Group Signatures. In EUROCRYPT '91, 1991."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2007.19"},{"key":"e_1_3_2_1_20_1","volume-title":"Universit\u00e9 Paris","author":"Coquand T.","year":"1985","unstructured":"T. Coquand . Une Th\u00e9orie des Constructions. PhD thesis , Universit\u00e9 Paris , Jan. 1985 . T. Coquand. Une Th\u00e9orie des Constructions. PhD thesis, Universit\u00e9 Paris, Jan. 1985."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.5555\/829514.830540"},{"key":"e_1_3_2_1_22_1","volume-title":"The TLS protocol version 1.1. draft-ietf-tls-rfc2246-bis-02.txt","author":"Dierks T.","year":"2002","unstructured":"T. Dierks and E. Rescorla . The TLS protocol version 1.1. draft-ietf-tls-rfc2246-bis-02.txt , Network Working Group , October 2002 . T. Dierks and E. Rescorla. The TLS protocol version 1.1. draft-ietf-tls-rfc2246-bis-02.txt, Network Working Group, October 2002."},{"key":"e_1_3_2_1_23_1","volume-title":"Mar.","author":"D.","year":"1999","unstructured":"D. Eastlake 3rd. Domain Name System Security Extensions. RFC 2535 (Proposed Standard) , Mar. 1999 . D. Eastlake 3rd. Domain Name System Security Extensions. RFC 2535 (Proposed Standard), Mar. 1999."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095810.1095813"},{"key":"e_1_3_2_1_25_1","volume-title":"Sept.","author":"Ellison C.","year":"1999","unstructured":"C. Ellison SPKI certificate theory. RFC 2693 (Experimental) , Sept. 1999 . C. Ellison et al. SPKI certificate theory. RFC 2693 (Experimental), Sept. 1999."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2003.1212691"},{"key":"e_1_3_2_1_27_1","volume-title":"National Technical Information Service","author":"FIPS","year":"1995","unstructured":"FIPS 180-1. Secure Hash Standard. U.S. Department of Commerce\/N.I.S.T ., National Technical Information Service , Springfield , VA , April 1995 . FIPS 180-1. Secure Hash Standard. U.S. Department of Commerce\/N.I.S.T., National Technical Information Service, Springfield, VA, April 1995."},{"key":"e_1_3_2_1_28_1","volume-title":"National Technical Information Service","author":"FIPS","year":"2000","unstructured":"FIPS 186-2. Digital Signature Standard (DSS). U.S. Department of Commerce\/N.I.S.T ., National Technical Information Service , Springfield , VA , January 2000 . FIPS 186-2. Digital Signature Standard (DSS). U.S. Department of Commerce\/N.I.S.T., National Technical Information Service, Springfield, VA, January 2000."},{"key":"e_1_3_2_1_29_1","volume-title":"4th USENIX Conference on File and Storage Technologies (FAST '05)","author":"Ford B.","year":"2005","unstructured":"B. Ford . VXA : A virtual architecture for durable compressed archives . In 4th USENIX Conference on File and Storage Technologies (FAST '05) , San Francisco, California , December 2005 . B. Ford. VXA: A virtual architecture for durable compressed archives. In 4th USENIX Conference on File and Storage Technologies (FAST '05), San Francisco, California, December 2005."},{"key":"e_1_3_2_1_30_1","volume-title":"Proceedings of the 7th USENIX Symposium on Operating Systems Design and Implementation (OSDI '06)","author":"Ford B.","year":"2006","unstructured":"B. Ford , J. Strauss , C. Lesniewski-Laas , S. Rhea , F. Kaashoek , and R. Morris . Persistent personal names for globally connected mobile devices . In Proceedings of the 7th USENIX Symposium on Operating Systems Design and Implementation (OSDI '06) , Seattle, Washington , November 2006 . B. Ford, J. Strauss, C. Lesniewski-Laas, S. Rhea, F. Kaashoek, and R. Morris. Persistent personal names for globally connected mobile devices. In Proceedings of the 7th USENIX Symposium on Operating Systems Design and Implementation (OSDI '06), Seattle, Washington, November 2006."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/11863908_19"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1002\/j.1538-7305.1974.tb02751.x"},{"key":"e_1_3_2_1_33_1","first-page":"194","volume-title":"Symposium on Logic in Computer Science","author":"Harper R.","year":"1987","unstructured":"R. Harper , F. Honsell , and G. Plotkin . A framework for defining logics . In Symposium on Logic in Computer Science , pages 194 -- 204 . IEEE Computer Society Press , June 1987 . R. Harper, F. Honsell, and G. Plotkin. A framework for defining logics. In Symposium on Logic in Computer Science, pages 194--204. IEEE Computer Society Press, June 1987."},{"key":"e_1_3_2_1_34_1","first-page":"151","volume-title":"Proceedings of the Fourth Symposium on Operating Systems Design and Implementation","author":"Howell J.","year":"2000","unstructured":"J. Howell and D. Kotz . End-to-end authorization . In Proceedings of the Fourth Symposium on Operating Systems Design and Implementation , pages 151 -- 164 , 2000 . J. Howell and D. Kotz. End-to-end authorization. In Proceedings of the Fourth Symposium on Operating Systems Design and Implementation, pages 151--164, 2000."},{"key":"e_1_3_2_1_35_1","first-page":"3447","article-title":"Public-Key Cryptography Standards (PKCS) 1","author":"Jonsson J.","year":"2003","unstructured":"J. Jonsson and B. Kaliski . Public-Key Cryptography Standards (PKCS) 1 . RFC 3447 , 2003 . J. Jonsson and B. Kaliski. Public-Key Cryptography Standards (PKCS) 1. RFC 3447, 2003.","journal-title":"RFC"},{"key":"e_1_3_2_1_36_1","first-page":"47","article-title":"Information-theoretic cryptography","volume":"99","author":"Maurer U.","unstructured":"U. Maurer . Information-theoretic cryptography . Advances in Cryptology , 99 : 47 -- 64 . U. Maurer. Information-theoretic cryptography. Advances in Cryptology, 99:47--64.","journal-title":"Advances in Cryptology"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/319151.319160"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.5555\/18262.25413"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/263699.263712"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.5555\/788020.788923"},{"key":"e_1_3_2_1_41_1","first-page":"4843","article-title":"An IPv6 prefix for overlay routable cryptographic hash identifiers (ORCHID)","author":"Nikander P.","year":"2007","unstructured":"P. Nikander and J. Laganier . An IPv6 prefix for overlay routable cryptographic hash identifiers (ORCHID) . RFC 4843 , 2007 . P. Nikander and J. Laganier. An IPv6 prefix for overlay routable cryptographic hash identifiers (ORCHID). RFC 4843, 2007.","journal-title":"RFC"},{"key":"e_1_3_2_1_42_1","first-page":"673","volume-title":"Isabelle-91","author":"Nipkow T.","year":"1992","unstructured":"T. Nipkow and L. C. Paulson . Isabelle-91 . In D. Kapur, editor, 11th International Conference on Automated Deduction, pages 673 -- 676 , Saratoga Springs, NY, 1992 . Springer-Verlag LNAI 607. T. Nipkow and L. C. Paulson. Isabelle-91. In D. Kapur, editor, 11th International Conference on Automated Deduction, pages 673--676, Saratoga Springs, NY, 1992. Springer-Verlag LNAI 607."},{"key":"e_1_3_2_1_43_1","unstructured":"OpenID. http:\/\/openid.net\/.  OpenID. http:\/\/openid.net\/."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.5555\/120477.120483"},{"key":"e_1_3_2_1_45_1","unstructured":"PlanetLab. http:\/\/www.planet-lab.org.  PlanetLab. http:\/\/www.planet-lab.org."},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"crossref","unstructured":"E. Rescorla. HTTP Over TLS. RFC 2818 (Informational) May 2000.   E. Rescorla. HTTP Over TLS. RFC 2818 (Informational) May 2000.","DOI":"10.17487\/rfc2818"},{"key":"e_1_3_2_1_47_1","volume-title":"The WHIRLPOOL hash function","author":"Rijmen V.","year":"2001","unstructured":"V. Rijmen and P. S. L. M. Barreto . The WHIRLPOOL hash function , 2001 . V. Rijmen and P. S. L. M. Barreto. The WHIRLPOOL hash function, 2001."},{"key":"e_1_3_2_1_48_1","volume-title":"May","author":"Rivest R.","year":"2003","unstructured":"R. Rivest . Re: The Pure Crypto Project's hash function. Message to cryptography@metzdowd.com mailing list , May 2003 . R. Rivest. Re: The Pure Crypto Project's hash function. Message to cryptography@metzdowd.com mailing list, May 2003."},{"key":"e_1_3_2_1_49_1","volume-title":"CRYPTO'96 Rumpsession","author":"Rivest R. L.","year":"1996","unstructured":"R. L. Rivest and B. Lampson . SDSI - a simple distributed security infrastructure . Presented at CRYPTO'96 Rumpsession , 1996 . R. L. Rivest and B. Lampson. SDSI - a simple distributed security infrastructure. Presented at CRYPTO'96 Rumpsession, 1996."},{"key":"e_1_3_2_1_50_1","unstructured":"RSA SecurID token. http:\/\/www.rsa.com.  RSA SecurID token. http:\/\/www.rsa.com."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1109\/PROC.1975.9939"},{"key":"e_1_3_2_1_52_1","volume-title":"CRYPTO","author":"Shamir A.","year":"1984","unstructured":"A. Shamir . Identity-based cryptosystems and signature schemes . In CRYPTO , 1984 . A. Shamir. Identity-based cryptosystems and signature schemes. In CRYPTO, 1984."},{"key":"e_1_3_2_1_53_1","first-page":"191","volume-title":"USENIX Winter","author":"Steiner J. G.","year":"1988","unstructured":"J. G. Steiner , B. C. Neuman , and J. I. Schiller . Kerberos: An authentication service for open network systems . In USENIX Winter , pages 191 -- 202 , 1988 . J. G. Steiner, B. C. Neuman, and J. I. Schiller. Kerberos: An authentication service for open network systems. In USENIX Winter, pages 191--202, 1988."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1007\/BF01388651"},{"key":"e_1_3_2_1_55_1","unstructured":"A. S. Troelstra. Constructivism and proof theory.  A. S. Troelstra. Constructivism and proof theory."},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1007\/11535218_2"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1016\/0022-0000(81)90033-7"}],"event":{"name":"CCS07: 14th ACM Conference on Computer and Communications Security 2007","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control","ACM Association for Computing Machinery"],"location":"Alexandria Virginia USA","acronym":"CCS07"},"container-title":["Proceedings of the 14th ACM conference on Computer and communications security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1315245.1315299","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1315245.1315299","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T14:58:21Z","timestamp":1750258701000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1315245.1315299"}},"subtitle":["extensible authorization for distributed services"],"short-title":[],"issued":{"date-parts":[[2007,10,28]]},"references-count":55,"alternative-id":["10.1145\/1315245.1315299","10.1145\/1315245"],"URL":"https:\/\/doi.org\/10.1145\/1315245.1315299","relation":{},"subject":[],"published":{"date-parts":[[2007,10,28]]},"assertion":[{"value":"2007-10-28","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}