Title
New adaptive trust models against DDoS: back-up CA and mesh PKI
Abstract
Most of Public Key Infrastructures (PKIs) are based on the ITU-T X.509, and the top-down hierarchical structure is extensively employed for the PKI community. However, the prominent drawback of the hierarchical PKI structure is that the CAs can be the target of serious attacks such as Distributed Denial-of-Service (DDoS). In this paper, we present two new models, Back-up CA and Mesh PKI, to cope with such Internet attacks. The proposed Back-up CA sets up an alternative path when an original CA is under attack, consequently improving availability and flexibility. Mesh PKI is a collection of CAs dynamically linked by multiple peer-to-peer cross-certifications. The Mesh PKI is very attractive, not only because they are robust to attacks but also because they help to reduce overall certificate validation time and to balance the load across multiple CAs.
Year
Venue
Keywords
2003
Human.Society.Internet
original ca,multiple peer-to-peer cross-certifications,mesh pki,new adaptive trust model,top-down hierarchical structure,back-up ca,pki community,multiple cas,itu-t x,proposed back-up ca,hierarchical pki structure,public key infrastructure,top down,distributed denial of service
Field
DocType
Volume
Public key infrastructure,Denial-of-service attack,Computer science,Computer network,Certificate authority,Border Gateway Protocol,Public-key cryptography,Authorization certificate,Distributed computing,The Internet,Certificate
Conference
2713
ISSN
ISBN
Citations 
0302-9743
3-540-40456-2
2
PageRank 
References 
Authors
0.41
6
6
Name
Order
Citations
PageRank
Jaeil Lee1488.69
Minsoo Lee231531.33
Jabeom Gu3203.36
Seoklae Lee4142.66
Sehyun Park526936.03
JooSeok Song630658.82