Enabling NAME-Based Security and Trust - Trust Management IX Access content directly
Conference Papers Year : 2015

Enabling NAME-Based Security and Trust

Nikos Fotiou
  • Function : Author
  • PersonId : 996029

Abstract

An integral component of almost any security and trust system is endpoint identity verification. The predominant identification primitive, used in most contemporary systems, is the digital certificate. A digital certificate binds a NAME (i.e., an “official way to refer to an entity”) to a cryptographic public key, which is then used for the NAME verification. In this paper, we propose a NAME verification system that does not rely on digital certificates. Our solution uses Hierarchical Identity Based Encryption (HIBE) to allow fine-grained NAME verification, trust delegation and attribute-based access control. For the delivery of the necessary system parameters we propose an approach that leverages the NAME registration and resolution systems, eliminating the need for a Public-Key Infrastructure. As proof of concept, we implement and evaluate our system using the Lewko-Waters HIBE scheme and DANE-DNSSEC.
Fichier principal
Vignette du fichier
337890_1_En_4_Chapter.pdf (1.25 Mo) Télécharger le fichier
Origin : Files produced by the author(s)
Loading...

Dates and versions

hal-01416207 , version 1 (14-12-2016)

Licence

Attribution

Identifiers

Cite

Nikos Fotiou, George C. Polyzos. Enabling NAME-Based Security and Trust. 9th IFIP International Conference on Trust Management (TM), May 2015, Hamburg, Germany. pp.47-59, ⟨10.1007/978-3-319-18491-3_4⟩. ⟨hal-01416207⟩
88 View
84 Download

Altmetric

Share

Gmail Facebook X LinkedIn More