Skip to main navigation Skip to search Skip to main content

PKI trust relationships: From a hybrid architecture to a hierarchical model

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

9 Scopus citations

Abstract

Trust models provide a framework to create and manage trust relationships among the different entities of a Public Key Infrastructure (PKI). These trust relationships are verified through the certification path validation process, which involves: path discovery, signature verification and revocation status checking. When trust relationships are bidirectional, multiple paths can exist between two entities, which increase the runtime of the path discovery process. In addition, validation of long paths can be difficult, especially when storage and processing capacities of the verifier are limited. In this paper, we propose a protocol to establish a hierarchical trust model from a PKI with unidirectional and bidirectional trust relationships. This protocol makes more efficient the path validation process since in a hierarchical model, trust relationships are unidirectional and paths are easy to find. In addition, our protocol allows setting a maximum path length, so it can be adapted to the features of users' terminals.

Original languageEnglish
Title of host publicationProceedings - First International Conference on Availability, Reliability and Security, ARES 2006
PublisherIEEE Computer Society
Pages563-570
Number of pages8
ISBN (Print)0769525679, 9780769525679
DOIs
StatePublished - 2006
Externally publishedYes
Event1st International Conference on Availability, Reliability and Security, ARES 2006 - Vienna, Austria
Duration: 20 Apr 200622 Apr 2006

Publication series

NameProceedings - First International Conference on Availability, Reliability and Security, ARES 2006
Volume2006

Conference

Conference1st International Conference on Availability, Reliability and Security, ARES 2006
Country/TerritoryAustria
CityVienna
Period20/04/0622/04/06

Fingerprint

Dive into the research topics of 'PKI trust relationships: From a hybrid architecture to a hierarchical model'. Together they form a unique fingerprint.

Cite this