Hard-Earned Lessons in Access Control at Scale: Enforcing Identity and Policy Across Trust Boundaries with Reverse Proxies and mTLS
Fuente:
arXiv
Saved in:
| Main Authors: | Singh, Sanjay, Mahto, Mitendra |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Managed TLS Under Migration: Authentication Authority Across CDN and Hosting Transitions
by: Ganiuly, Daniyal, et al.
Published: (2025)
by: Ganiuly, Daniyal, et al.
Published: (2025)
Zero-Trust Network Access (ZTNA)
by: Mavroudis, Vasilios
Published: (2024)
by: Mavroudis, Vasilios
Published: (2024)
Securing the Web with HSTS-Enforced
by: van Diepen, Aaron, et al.
Published: (2026)
by: van Diepen, Aaron, et al.
Published: (2026)
Zero Trust for Multi-RAT IoT: Trust Boundary Management in Heterogeneous Wireless Network Environments
by: Shelby, Jonathan
Published: (2026)
by: Shelby, Jonathan
Published: (2026)
Trusted Identities for AI Agents: Leveraging Telco-Hosted eSIM Infrastructure
by: Barros, Sebastian
Published: (2025)
by: Barros, Sebastian
Published: (2025)
OAuthHub: Mitigating OAuth Data Overaccess through a Local Data Hub
by: Li, Qiyu, et al.
Published: (2026)
by: Li, Qiyu, et al.
Published: (2026)
AndroScanner: Automated Backend Vulnerability Detection for Android Applications
by: Dandu, Harini
Published: (2026)
by: Dandu, Harini
Published: (2026)
WSEmail: A Retrospective on a System for Secure Internet Messaging Based on Web Services
by: May, Michael J., et al.
Published: (2019)
by: May, Michael J., et al.
Published: (2019)
Utilizing Large Language Models to Translate RFC Protocol Specifications to CPSA Definitions
by: Duclos, Martin, et al.
Published: (2024)
by: Duclos, Martin, et al.
Published: (2024)
An Automated Blackbox Noncompliance Checker for QUIC Server Implementations
by: Ang, Kian Kai, et al.
Published: (2025)
by: Ang, Kian Kai, et al.
Published: (2025)
SoK: The Design Paradigm of Safe and Secure Defaults
by: Ruohonen, Jukka
Published: (2024)
by: Ruohonen, Jukka
Published: (2024)
Is the OWASP Top 10 list comprehensive enough for writing secure code?
by: Sane, Parth
Published: (2020)
by: Sane, Parth
Published: (2020)
Performance Analysis of Security Certificate Management System in Vehicle-to-Everything (V2X)
by: Chen, Abel C. H., et al.
Published: (2023)
by: Chen, Abel C. H., et al.
Published: (2023)
A Systematic Mapping Study on SDN Controllers for Enhancing Security in IoT Networks
by: Oredola, Charles, et al.
Published: (2024)
by: Oredola, Charles, et al.
Published: (2024)
A Novel Protocol Using Captive Portals for FIDO2 Network Authentication
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
AFL-ICP: Enhancing Industrial Control Protocol Reliability via Specification-Guided Fuzzing
by: Meng, Jiaying, et al.
Published: (2026)
by: Meng, Jiaying, et al.
Published: (2026)
A Survey on Mapping Digital Systems with Bill of Materials: Development, Practices, and Challenges
by: Zhang, Shuai, et al.
Published: (2026)
by: Zhang, Shuai, et al.
Published: (2026)
Thou Shall Not Pass: Gatekeeping Outbound TLS Connections
by: Brum, Henrique B., et al.
Published: (2026)
by: Brum, Henrique B., et al.
Published: (2026)
DID Link: Authentication in TLS with Decentralized Identifiers and Verifiable Credentials
by: Garzon, Sandro Rodriguez, et al.
Published: (2024)
by: Garzon, Sandro Rodriguez, et al.
Published: (2024)
Bidirectional TLS Handshake Caching for Constrained Industrial IoT Scenarios
by: Bodenhausen, Jörn, et al.
Published: (2025)
by: Bodenhausen, Jörn, et al.
Published: (2025)
Adaptive Optimization of TLS Overhead for Wireless Communication in Critical Infrastructure
by: Bodenhausen, Jörn, et al.
Published: (2024)
by: Bodenhausen, Jörn, et al.
Published: (2024)
TLoRa: Implementing TLS Over LoRa for Secure HTTP Communication in IoT
by: Ghosh, Atonu, et al.
Published: (2025)
by: Ghosh, Atonu, et al.
Published: (2025)
How to Measure TLS, X.509 Certificates, and Web PKI: A Tutorial and Brief Survey
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
by: Tehrani, Pouyan Fotouhi, et al.
Published: (2024)
Aquaman: A Transparent Proxy Architecture for Quantum Resilient Key Establishment
by: Mallick, Tushin, et al.
Published: (2026)
by: Mallick, Tushin, et al.
Published: (2026)
MeshGuard: MUD-Based Network Access Control for Large-Scale Thread-Powered IoT Networks
by: George, Dominik Roy, et al.
Published: (2026)
by: George, Dominik Roy, et al.
Published: (2026)
Internet-Scale Measurement of React2Shell Exploitation Using an Active Network Telescope
by: Singh, Aakash, et al.
Published: (2026)
by: Singh, Aakash, et al.
Published: (2026)
TrustZero -- open, verifiable and scalable zero-trust
by: Dumitrescu, Adrian-Tudor, et al.
Published: (2025)
by: Dumitrescu, Adrian-Tudor, et al.
Published: (2025)
CATS: A framework for Cooperative Autonomy Trust & Security
by: Asavisanu, Namo, et al.
Published: (2025)
by: Asavisanu, Namo, et al.
Published: (2025)
Reverse Engineered MiniFS File System
by: Belimov, Dmitrii, et al.
Published: (2024)
by: Belimov, Dmitrii, et al.
Published: (2024)
Towards Trusted Service Monitoring: Verifiable Service Level Agreements
by: Castillo, Fernando, et al.
Published: (2025)
by: Castillo, Fernando, et al.
Published: (2025)
The Evolution of Zero Trust Architecture (ZTA) from Concept to Implementation
by: Nasiruzzaman, Md, et al.
Published: (2025)
by: Nasiruzzaman, Md, et al.
Published: (2025)
Behavioral Consistency and Transparency Analysis on Large Language Model API Gateways
by: Lin, Guanjie, et al.
Published: (2026)
by: Lin, Guanjie, et al.
Published: (2026)
PANTHER: Pluginizable Testing Environment for Network Protocols
by: Crochet, Christophe, et al.
Published: (2025)
by: Crochet, Christophe, et al.
Published: (2025)
Network Simulator-centric Compositional Testing
by: Rousseaux, Tom, et al.
Published: (2025)
by: Rousseaux, Tom, et al.
Published: (2025)
Learning Failure-Inducing Models for Testing Software-Defined Networks
by: Ollando, Raphaël, et al.
Published: (2022)
by: Ollando, Raphaël, et al.
Published: (2022)
Minimally Intrusive Access Management to Content Delivery Networks based on Performance Models and Access Patterns
by: Rodrigues, Lenise M. V., et al.
Published: (2024)
by: Rodrigues, Lenise M. V., et al.
Published: (2024)
Decentralized Credential Status Management: A Paradigm Shift in Digital Trust
by: Herbke, Patrick, et al.
Published: (2024)
by: Herbke, Patrick, et al.
Published: (2024)
Security, Trust and Privacy challenges in AI-driven 6G Networks
by: Rifa-Pous, Helena, et al.
Published: (2024)
by: Rifa-Pous, Helena, et al.
Published: (2024)
SAFE: Spatially-Aware Feedback Enhancement for Fault-Tolerant Trust Management in VANETs
by: Turgut, İpek Abasıkeleş
Published: (2026)
by: Turgut, İpek Abasıkeleş
Published: (2026)
Less is More: Simplifying Network Traffic Classification Leveraging RFCs
by: Wickramasinghe, Nimesha, et al.
Published: (2025)
by: Wickramasinghe, Nimesha, et al.
Published: (2025)
Similar Items
-
Managed TLS Under Migration: Authentication Authority Across CDN and Hosting Transitions
by: Ganiuly, Daniyal, et al.
Published: (2025) -
Zero-Trust Network Access (ZTNA)
by: Mavroudis, Vasilios
Published: (2024) -
Securing the Web with HSTS-Enforced
by: van Diepen, Aaron, et al.
Published: (2026) -
Zero Trust for Multi-RAT IoT: Trust Boundary Management in Heterogeneous Wireless Network Environments
by: Shelby, Jonathan
Published: (2026) -
Trusted Identities for AI Agents: Leveraging Telco-Hosted eSIM Infrastructure
by: Barros, Sebastian
Published: (2025)