Title :
A delayed commitment scheme to enhance public key certificate based protocols
Author_Institution :
Sci. Univ. of Tokyo, Japan
Abstract :
Public key certificate based protocols depend on the freshness of the certificates for their security. It has been pointed out by various authors that current Public Key Infrastructure (PKI) does not provide effective freshness proof for certificates. An “ex-employee” who has access to the private key of a compromised server certificate can mount an attack on the SSL/TLS hand-shake protocol and eavesdrop the subsequent secret communication even if the server uses a fresh certificate. In this paper we propose an improved handshake protocol which requires minimum change to the current SSL/TLS handshake protocol, yet practically prevent the above “ex-employee” attack
Keywords :
protocols; public key cryptography; delayed commitment scheme; improved handshake protocol; protocols; public key certificate based protocols; security; Access protocols; Business; Delay; Internet; Public key; Web server;
Conference_Titel :
Enabling Technologies: Infrastructure for Collaborative Enterprises, 2000. (WET ICE 2000). Proeedings. IEEE 9th International Workshops on
Conference_Location :
Gaithersburg, MD
Print_ISBN :
0-7695-0798-0
DOI :
10.1109/ENABL.2000.883725