BIB-VERSION:: CS-TR-v2.0 ID:: STAN//CS-TN-97-53 ENTRY:: February 05, 1997 ORGANIZATION:: Stanford University, Department of Computer Science TITLE:: A Communication Agreement Framework of Access Control TYPE:: Technical Note AUTHOR:: Roscheisen, Martin AUTHOR:: Winograd, Terry DATE:: February 1997 PAGES:: 11 ABSTRACT:: We introduce a framework of access control which shifts the emphasis from the participants to their relationship. The framework is based on a communication model in which participants negotiate the mutually agreed-upon boundary conditions of their relationship in compact "communication pacts," called "commpacts." Commpacts can be seen as a third fundamental type next to access-control lists (ACLs) and capabilities. We argue that in current networked environments characterized by multiple authorities and "trusted proxies," this model provides an encapsulation for interdependent authorization policies, which reduces the negotiation complexity of general (user- and content-dependent) distributed access control and provides a clear user-conceptual metaphor; it also generalizes work in electronic contracting and embeds naturally into the existing legal and institutional infrastructure. The framework is intended to provide a language enabling a social mechanism of coordinated expectation. NOTES:: [Adminitrivia V1/Prg/19970205] END:: STAN//CS-TN-97-53