DocumentCode :
3704128
Title :
A Distributed Reputation System for Certification Authority Trust Management
Author :
Jiska Classen;Johannes Braun;Florian Volk;Matthias Hollick;Johannes Buchmann; Mühlhäuser
Author_Institution :
CASED, Tech. Univ. Darmstadt, Darmstadt, Germany
Volume :
1
fYear :
2015
Firstpage :
1349
Lastpage :
1356
Abstract :
In the current Web Public Key Infrastructure (Web PKI), few central instances have the power to make trust decisions. From a system´s perspective, it has the side effect that every Certification Authority (CA) becomes a single point of failure (SPOF). In addition, trust is no individual matter per user, what makes trust decisions hard to revise. Hence, we propose a method to leverage Internet users and thus distribute CA trust decisions. However, the average user is unable to manually decide which incoming TLS connections are trustworthy and which are not. Therefore, we overcome this issue with a distributed reputation system that facilitates sharing trust opinions while preserving user privacy. We assess our methodology using real-world browsing histories. Our results exhibit a significant attack surface reduction with respect to the current Web PKI, and at the same time we only introduce a minimal overhead.
Keywords :
"Privacy","Protocols","Security","Routing","History","Peer-to-peer computing","Internet"
Publisher :
ieee
Conference_Titel :
Trustcom/BigDataSE/ISPA, 2015 IEEE
Type :
conf
DOI :
10.1109/Trustcom.2015.529
Filename :
7345437
Link To Document :
بازگشت