The Authorization Authority

WHAT’S A ROLE PROOF?

We generate a digitally signed object that references a certificate through a cryptographically generated representation, using commonly accepted hashing algorithms.

 
Each proof represents an application or organizational role and has a unique ID.
Proofs are generated for each role repeatedly with each having only a short life.
Proofs reference other proofs for delegation. This can be done across multiple authorities.
Each contains a list of certificates, referenced by their hash to show authorization.
Each is digitally signed to give it cryptographic authenticity.