@techreport{moscaritolo-mione-pgpticket-03, number = {draft-moscaritolo-mione-pgpticket-03}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-moscaritolo-mione-pgpticket/03/}, author = {Vinnie Moscaritolo and Antonino N. Mione}, title = {{PGPticket}}, pagetotal = 18, year = 1999, month = aug, day = 17, abstract = {OpenPGP specifies message formats and certificate formats used for exchange of encrypted and/or authenticated objects. This document discusses methods of extending OpenPGP's message formats to support an authorization system. This system would use public key cryptography to authenticate a user to a server and establish the user's access permissions. The concept is that the user acquires a ticket signed by some issuer that specifies what they are entitled to do. That ticket is then submitted to a server. The server uses a challenge/response method to verify that the holder really has the matching private key. The server then allows the access specified.}, }