A new modified bridge certification authority PKI trust model

被引:2
|
作者
Li, Mingchu [1 ]
Ren, Yizhi [1 ]
Wang, Zhihui [1 ]
Xie, Jun [1 ]
Yao, Hongyan [1 ]
机构
[1] Dalian Univ Technol, Sch Software, Dalian, Peoples R China
关键词
PKI; trust model; bridge certificate authority;
D O I
10.1109/SPCA.2006.297465
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Current trust structures suffer from a scaling problem, and some may have security problems. Even given the topological simplification of bridge Certification Authorities, as cross certificate meshes grow in size and complexity, the number of possible routes between domains increases very quickly, and the time required for path building can increase beyond a tolerable delay for real-time operation. This paper proposes a new modified bridge CA (BCA). In certification path process, the new BCA is trivial complexity than original one, but more efficient than unstructured mesh trust model. And it also owns some other features. Such as more security, less expensive cost based on existing PKI trust model and some etc. For improving the performance of certification path process of the new model, we suggest an independent mechanism to automatically discovery and verb these certificate paths among these domains.
引用
收藏
页码:23 / +
页数:2
相关论文
共 50 条
  • [1] The US Federal PKI and the Federal Bridge Certification Authority
    Alterman, P
    COMPUTER NETWORKS-THE INTERNATIONAL JOURNAL OF COMPUTER AND TELECOMMUNICATIONS NETWORKING, 2001, 37 (06): : 685 - 690
  • [2] A new trust model for PKI interoperability
    Guo, Z
    Okuyama, T
    Finley, MR
    2005 JOINT INTERNATIONAL CONFERENCE ON AUTONOMIC AND AUTONOMOUS SYSTEMS AND INTERNATIONAL CONFERENCE ON NETWORKING AND SERVICES (ICAS/ICNS), 2005, : 230 - 234
  • [3] Security issues in PKI and certification authority design
    Kent, S
    ADVANCED SECURITY TECHNOLOGIES IN NETWORKING, 2001, 178 : 33 - 52
  • [4] Design and Implementation of PKI-based Certification Authority
    Zheng Ying
    Bai Qinghai
    Zhao Linna
    Chun Hua
    Chen Jing
    SIXTH INTERNATIONAL CONFERENCE ON ELECTRONICS AND INFORMATION ENGINEERING, 2015, 9794
  • [5] Incorporating revocation of certification into a PKI model
    Azimzadeh, Fatemeh
    Khatun, Sabira.
    Ali, Borhannudin. M.
    Kargar, Mohammad. J.
    ICT-MICC: 2007 IEEE INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS AND MALAYSIA INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1 AND 2, PROCEEDINGS, 2007, : 770 - 775
  • [6] Evaluating trust in a public key certification authority
    Chadwick, DW
    Basden, A
    COMPUTERS & SECURITY, 2001, 20 (07) : 592 - 611
  • [7] A new and scalable certification path discovery model in the emerging global PKI
    Gao, Zhiwei
    Luo, Ping
    Gu, Zhimin
    Liu, Hongjun
    MUE: 2007 INTERNATIONAL CONFERENCE ON MULTIMEDIA AND UBIQUITOUS ENGINEERING, PROCEEDINGS, 2007, : 372 - +
  • [8] A Distributed Reputation System for Certification Authority Trust Management
    Classen, Eska
    Braun, Johannes
    Volk, Florian
    Hollick, Matthias
    Buchmann, Johannes
    Muehlhaeuser, Max
    2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 1349 - 1356
  • [9] Research on Model of Trust Degrees for PKI
    Zhang, Mingde
    Zheng, Xuefeng
    Yang, Wensheng
    Lv, Shuwang
    Zhang, Qingguo
    FIFTH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY, VOL 2, PROCEEDINGS, 2009, : 647 - +
  • [10] The National PKI of Peru: a new certification hierarchy
    Encinas, Maria
    Martinez, Ronald
    Cuno, Alvaro
    Gallo, Alfredo
    Zapata, Fernando
    Saavedra, Ricardo
    2018 37TH INTERNATIONAL CONFERENCE OF THE CHILEAN COMPUTER SCIENCE SOCIETY (SCCC), 2018,