Answer:
In SESAME, the user is first authenticated to an authentication server and receives a token. The token is then presented to a privilege attribute server as proof of identity to gain a PAC.
Explanation:
SESAME consists of a European project for research and development, funded in part by the European Commission accordingly to its RACE program, that provides complex sign-on with features of distributed access control and protection based on cryptography for data.z exchanged. SESAME presents the user a PAC to a target application at any occasion in which it is necessary to access a protected resource.