Different organizations make use of internet for intercommunication. To ensure confidentiality, integrity, authentication and non-repudiation, there is a requirement to have a secure communication system like PKI. Since the requirement of each organization for security is different therefore they adopt different PKI policies for the purpose. The problem arises due to inoperability between the organizations due to different PKI policies. Different solutions have been suggested so far but these have made the system more complex. There is a requirement to have a comparatively simple system but providing all security services i.e. confidentiality, integrity, authentication and non-repudiation. This article not only presents an architecture but also the implementation of PKI model in multi domain environment (Between different Universities of Pakistan) to facilitate data and resource sharing in a secure way. The model uses the existing network infrastructure of Gigabit bandwidth links between different Universities. In the model, a National Level CA was defined and all others Universities forming different domains intercommunicated under the National CA.
Cloud facility is becoming common day by day due to its elasticity nature and availability anywhere over the internet. Meanwhile it has also become a major security threat due to putting all data in the hands of cloud service providers. Mostly all cloud service providers claim that data uploaded on cloud is fully secure and un-accessible to un-authorized users but actually how much secure is this, we have to trust on cloud providers. Mostly all service providers claim that they have adopted secure techniques either to provide confidentiality or authenticity but there is a need that this security providing system can provide all security services as a single suite. This security service should be capable not only to provide simple security but all basic services of security that are authenticity, integrity, confidentiality and non-repudiation. In our work we establish a physical cloud, configure different machines offering different services and host Public Key Infrastructure service on it. Users and Computers authenticated successfully and got their certificate. Results show that PKI under cloud can be a good strategy to provide security to data to store on cloud storage and to services hosted on cloud as well. Challenges that may occur in cloud based PKI systems have also been specified.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.