DocumentCode
480095
Title
A Decentralized Certification Authority Based on Real World Trust Relationships
Author
Jingjing Wu ; Jiwu Jing ; Jingqiang Lin
Author_Institution
Dept. of Electron. Eng. & Inf. Sci., Univ. of Sci. & Technol. of China, Hefei
Volume
3
fYear
2008
fDate
12-14 Dec. 2008
Firstpage
1123
Lastpage
1126
Abstract
The public key infrastructure (PKI) provides security services for e-commerce, e-government and other cyber transactions. certification authority (CA), a critical component of PKI, acts as a trust third party (TTP) among these applications. A CA is usually controlled and operated by an authority in real world, which stores and publishes users´ public key and other attributes. However, various types of attributes on certificates are always determined by several authorities instead of a single one. Based on the practical experiences, PKI must be built on real world trust relationships [1], but CAs, registration authorities (RAs) and other commodity PKI components cannotreflect these relationships among authorities well. Although some decentralized CA systems [2, 3] are designed and these CAs are operated by several administrators cooperatively, they focus on the security of CApsilas private key but not the trust relationships among administrators. To the best of our knowledge, no systematic work has been conducted to integrate several real world authorities into a CA, reflecting their trust relationships through system structure. We present a decentralized CA system, which is built and operated on real world trust relationships among several authorities, and issues standard X.509 certificates. Different authorities are responsible for different attributes on certificates, which make the certificates more trust and make the CA more similar to real world.
Keywords
private key cryptography; public key cryptography; CA private key; X.509 certificates; decentralized certification authority; public key infrastructure; real world trust relationships; registration authorities; trust third party; Certification; Computer science; Computer security; Content addressable storage; Digital signatures; Electronic government; Information science; Information security; Public key; Software engineering; CA; PKI; Real Word Trust Relationships;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Science and Software Engineering, 2008 International Conference on
Conference_Location
Wuhan, Hubei
Print_ISBN
978-0-7695-3336-0
Type
conf
DOI
10.1109/CSSE.2008.644
Filename
4722538
Link To Document