2018
DOI: 10.1049/iet-ifs.2016.0611
|View full text |Cite
|
Sign up to set email alerts
|

Server notaries: a complementary approach to the web PKI trust model

Abstract: SSL/TLS is the de facto protocol for providing secure communication over the Internet. It relies on the Web PKI model for authentication and secure key exchange. Despite its relatively successful past, the number of Web PKI incidents observed have increased recently. These incidents revealed the risks of forged certificates issued by certificate authorities without the consent of the domain owners. Several solutions have been proposed to solve this problem, but no solution has yet received widespread adaption … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1

Citation Types

0
3
0

Year Published

2018
2018
2021
2021

Publication Types

Select...
1
1
1
1

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(3 citation statements)
references
References 25 publications
0
3
0
Order By: Relevance
“…This is adequate for small organizations, but not to large organizations. Convergence [28] allows users to design a set of dynamic endorsers [29] that use network views for transmission authentication [31]. The Mozilla Web browser uses certi cate transparency and public keying to advertise trusted certi cates to clients [28] [32].…”
Section: B) Managing the Private Keysmentioning
confidence: 99%
“…This is adequate for small organizations, but not to large organizations. Convergence [28] allows users to design a set of dynamic endorsers [29] that use network views for transmission authentication [31]. The Mozilla Web browser uses certi cate transparency and public keying to advertise trusted certi cates to clients [28] [32].…”
Section: B) Managing the Private Keysmentioning
confidence: 99%
“…It is clear that this method will generate an overhead to the connection time because of needs to multiple path connections. A solution to overcome this overhead was proposed by making the notary receives the server's certificate and observe them [15]. However, this solution will increase the overhead on the notary servers.…”
Section: Related Workmentioning
confidence: 99%
“…Symantec, which represented more than 30% of the Internet's valid certificates in 2015, was discovered to have mis-issued more than 30,000 certificates ( [71]). Furthermore, the Trustwave ( [82]) incident reincited the growing concern that governments and private organizations are able to issue false certificates for surveillance, thus, violating the privacy of end-users ( [112]). In practice, there exist multiple CAs, which are linked with well-defined, parentchild relationships, based on trust and other policies.…”
Section: Introductionmentioning
confidence: 99%