Public key infrastructure (PKI) is a powerful tool for protecting information. Currently a PKI system shows a trend toward an emerging global PKI which becomes more complicated. The global PKI has to handle an enormous number of queries for cryptographic certificates which attest the authenticity of public keys. So a decentralized organization of the PKI is advantageously. Therefore we developed a specialized Peer-to-Peer-PKI model realizing efficient search and transfer of certificates and trust-recommendations. Our model based on our own rigorous binary tree algorithm and has four advantages. First, there is no any bottleneck problem when establishing a certification path or authenticating. Second, the authentication path is short with two constant logic steps. Third, in our model the entities need to mutual authenticate don’t need to inquire or download the CRL. Fourth, it’s easy to extend and suitable for large-scale network.
목차
Abstract 1. Introduction 2. Related Works 3. Preliminaries 3.1 Basic PKI principles 3.2 Certification Path Discovery 4. RBT-P2P network model 5. PKI based on RBT-P2P network 5.1 The base of trust 5.2 The web of trusted 6. System implementation 6.1 Initialization 6.2 Joining the P2P-PKI 6.3 Expanding the P2P-PKI model 6.4 Authentication between two entities. 6.5 Certificate revocation. 7. Security analysis 7.1 Managing the failure of peers 7.2 Prevention of DoS attack 8. Conclusion 9. Acknowledgement 10. References
저자
Zhiwei Gao [ 1Department of Computer Science, Shijiazhuang Railway Institute of Technology, Shijiazhuang, 050043, China and 2Department of Computer Science, Beijing Institute of Technology, Beijing, 100081, China ]
Jinsheng Fan [ Department of Computer Science, Shijiazhuang Railway Institute of Technology, Shijiazhuang, 050043, China ]
Yufeng Jia [ Department of Computer Science, Shijiazhuang Railway Institute of Technology, Shijiazhuang, 050043, China ]
Li Zhang [ Department of Computer Science, Shijiazhuang Railway Institute of Technology, Shijiazhuang, 050043, China ]
보안공학연구지원센터(IJSIA) [Science & Engineering Research Support Center, Republic of Korea(IJSIA)]
설립연도
2006
분야
공학>컴퓨터학
소개
1. 보안공학에 대한 각종 조사 및 연구
2. 보안공학에 대한 응용기술 연구 및 발표
3. 보안공학에 관한 각종 학술 발표회 및 전시회 개최
4. 보안공학 기술의 상호 협조 및 정보교환
5. 보안공학에 관한 표준화 사업 및 규격의 제정
6. 보안공학에 관한 산학연 협동의 증진
7. 국제적 학술 교류 및 기술 협력
8. 보안공학에 관한 논문지 발간
9. 기타 본 회 목적 달성에 필요한 사업
간행물
간행물명
International Journal of Security and Its Applications
간기
격월간
pISSN
1738-9976
수록기간
2008~2016
등재여부
SCOPUS
십진분류
KDC 505DDC 605
이 권호 내 다른 논문 / International Journal of Security and Its Applications Vol.1 No.2