Towards Sustainable Evolution for the TLS Public-Key Infrastructure

被引:2
作者
Lee, Taeho [1 ]
Pappas, Christos [1 ]
Szalachowski, Pawel [2 ]
Perrig, Adrian [1 ]
机构
[1] Swiss Fed Inst Technol, Zurich, Switzerland
[2] SUTD, Singapore, Singapore
来源
PROCEEDINGS OF THE 2018 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (ASIACCS'18) | 2018年
基金
欧洲研究理事会;
关键词
D O I
10.1145/3196494.3196520
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Motivated by the weaknesses of today's TLS public-key infrastructure (PKI), recent studies have proposed numerous enhancements to fortify the PKI ecosystem. Deploying one particular enhancement is no panacea, since each one solves only a subset of the problems. At the same time, the high deployment barrier makes the benefit-cost ratio tilt in the wrong direction, leading to disappointing adoption rates for most proposals. As a way to escape from this conundrum, we propose a framework that supports the deployment of multiple PKI enhancements, with the ability to accommodate new, yet unforeseen, enhancements in the future. To enable mass adoption, we enlist the cloud as a "centralized" location where multiple enhancements can be accessed with high availability. Our approach is compatible with existing protocols and networking practices, with the ambition that a few changes will enable sustainable evolution for PKI enhancements. We provide extensive evaluation to show that the approach is scalable, cost-effective, and does not degrade communication performance. As a use case, we implement and evaluate two PKI enhancements.
引用
收藏
页码:637 / 649
页数:13
相关论文
共 50 条
  • [31] Social Life of PKI: Sociotechnical Development of Korean Public-Key Infrastructure
    Park, Dongoh
    IEEE ANNALS OF THE HISTORY OF COMPUTING, 2015, 37 (02) : 59 - 71
  • [32] Reliable and Adaptive Distributed Public-Key Management Infrastructure for the Internet of Things
    Belattaf, Samia
    Mohammedi, Mohamed
    Omar, Mawloud
    Aoudjit, Rachida
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 120 (01) : 113 - 137
  • [33] Survey on Issues and Recent Advances in Vehicular Public-Key Infrastructure (VPKI)
    Khan, Salabat
    Luo, Fei
    Zhang, Zijian
    Rahim, Mussadiq Abdul
    Ahmad, Mubashir
    Wu, Kaishun
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2022, 24 (03): : 1574 - 1601
  • [34] Public-Key Cryptanalysis
    Nguyen, Phong Q.
    RECENT TRENDS IN CRYPTOGRAPHY, 2009, 477 : 67 - 119
  • [35] PUBLIC-KEY SYSTEMS
    BRASSARD, G
    LECTURE NOTES IN COMPUTER SCIENCE, 1988, 325 : 20 - 39
  • [36] Towards securing Public-Key Storage using Hyperledger Fabric
    Dreyer, Julian
    Toenjes, Ralf
    Aschenbruck, Nils
    2022 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY (IEEE ICBC 2022), 2022,
  • [37] PUBLIC-KEY ENCRYPTION
    STUBBS, E
    EDN MAGAZINE-ELECTRICAL DESIGN NEWS, 1984, 29 (04): : 29 - 29
  • [38] PUBLIC-KEY CRYPTOGRAPHY
    ODLYZKO, AM
    AT&T TECHNICAL JOURNAL, 1994, 73 (05): : 17 - 23
  • [39] PUBLIC-KEY PATENT
    BENNETT, R
    BYTE, 1985, 10 (07): : 16 - 16
  • [40] Public-key steganography
    von Ahn, L
    Hopper, NJ
    ADVANCES IN CRYPTOLOGY - EUROCRYPT 2004, PROCEEDINGS, 2004, 3027 : 323 - 341