A Public Key Infrastructure (PKI) is considered one of the most important techniques used to propagate trust in authentication over the Internet. This technology is based on a trust model defined by the original X.509 (1988) standard and is composed of three entities: the certification authority (CA), the certificate holder (or subject), and the Relying Party (RP). The CA plays the role of a trusted third party between the certificate holder and the RP. In many use cases, this trust model has worked successfully. However, we argue that the application of this model on the Internet implies that web users need to depend on almost anyone in the world in order to use PKI technology. Thus, we believe that the current TLS system is not fit for purpose and must be revisited as a whole. In response, the latest draft edition of X.509 has proposed a new trust model by adding new entity called the Trust Broker (TB). In this paper, we present an implementation approach that a Trust Broker could follow in order to give RPs trust information about a CA by assessing the quality of its issued certificates. This is related to the quality of the CA’s policies and procedures and its commitment to them. Finally, we present our Trust Broker implementation that demonstrates how RPs can make informed decisions about certificate holders in the context of the global web, without requiring large processing resources themselves.
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2ltUTIc
via IFTTT
Εγγραφή σε:
Σχόλια ανάρτησης (Atom)
Δημοφιλείς αναρτήσεις
-
Caring for Patients with Physical Disabilities: Assessment of an Innovative Spinal Cord Injury Session that Addresses an Educational Gap Des...
-
Abstract Objective To study the effects of Astragalus polysaccharide (APS), the primary effective component of the Chinese herb medicine A...
-
Geriatric trauma: A population-based study Saint Shiou-Sheng Chen, Li-Chien Chien Formosan Journal of Surgery 2019 52(2):39-44 Background: G...
-
Related Articles Disrupted relationship between "resting state" connectivity and task-evoked activity during social percepti...
-
World Community; and Remarks on our Own Behalf Models of Anticipation Within the Responsible Research and Innovation Framework: the Two RRI ...
-
Abstract Eslicarbazepine acetate is a new anti-epileptic drug belonging to the dibenzazepine carboxamide family that is currently approved ...
-
Related Articles Randomized clinical trial of percutaneous tibial nerve stimulation versus sham electrical stimulation in patients wit...
-
Pharmacogenomics in palliative medicine Mahadev Rao Indian Journal of Palliative Care 2019 25(2):169-171 A survey of medical professionals i...
-
Objective Outpatient parenteral antimicrobial therapy (OPAT) provides opportunities for improved cost savings, but in the UK, implementation...
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου