Abstract Providing network infrastructure for authentication, authorization and accounting (AAA) functionalities required by inter-enterprise business applications operating over the global Internet is a challenging problem. The infrastructure needs to support large numbers of clients and services, and also to provide secure resources sharing between applications and across organizations. This paper describes a scalable and secure network infrastructure architecture for inter-enterprise AAA services, called .TRUST. The architecture has two novel features: (1) it uses a stateless design for improved security and simplified system structures, and (2) it supports a resource-sharing infrastructure while allowing decentralized management. To illustrate the use of the .TRUST architecture, the paper considers three application examples for which laboratory prototypes have been implemented. Keywords business network infrastructure, authentication, authorization, accounting, stateless systems, ...
H. T. Kung, F. Zhu, M. Iansiti