Title :
Intranet security framework based on short-lived certificates
Author :
Hsu, Yung-Kao ; Seymour, Stephen
Author_Institution :
AT&T Bell Labs., Middletown, NJ, USA
Abstract :
This paper describes an intranet security framework based on public key cryptography. It uses short-lived certificates to avoid and eliminate costly and difficult key management issues in the typical X.509 authentication framework. Specifically, it loosens the tightly coupled relationship between the security components and the application. Operationally, the framework creates the tasks of entity registration and certification so that certificates can be efficiently and securely delivered to the client. The result is a scalable and cost-effective security solution for intranet applications
Keywords :
Internet; certification; public key cryptography; Intranet security framework; X.509 authentication framework; entity registration; key management issues; public key cryptography; short-lived certificates; Authentication; Certification; Communication system security; Content addressable storage; Information security; Internet; Public key; Public key cryptography; Sockets; Terminology;
Conference_Titel :
Enabling Technologies: Infrastructure for Collaborative Enterprises, 1997. Proceedings., Sixth IEEE Workshops on
Conference_Location :
Cambridge, MA
Print_ISBN :
0-8186-7967-0
DOI :
10.1109/ENABL.1997.630819