|
How Does
Authorize Work?
Attribute Certificate Servers (ACS) and
Agents drop the certificates they may be holding in
their caches when they receive Invalidation Events for
them.

- Broker submits an authorisation request to an Agent.
- Agent looks up a certificate locally for the authorisation
request it receives.
- Agent requests a certificate from an Attribute Certificate
Server (ACS).
- The ACS looks up the certificate locally.
- The ACS asks the Repository to generate a new Authorisation
Attribute Certificate.
- The Repository generates a new certificate.
- It then returns it to the ACS.
- The ACS caches the returned certificate.
- It then returns it to the requesting Agent.
- The Agent caches the returned certificate.
- The Agent processes the request, and sends the response
back to the Broker.
- Administrators edit the Repository.
- Invalidation event(s) are sent.
- ACSs and Agents drop certificates held in their
cache when they become invalid.
|