{"title":"A PKI Approach Targeting the Provision of a Minimum Security Level within Internet","authors":"M. Laurent-Maknavicius","doi":"10.1109/ECUMN.2007.3","DOIUrl":null,"url":null,"abstract":"After decades of expansion, Internet became an essential tool useful for professionals and private individuals providing a large range of services like entailing, management of bank accounts, reservation of hotels, train time schedules, real time traffic information, Internet search... If not targeted at the beginning, information system security became rapidly a key challenge for professionals and strong security solutions emerged on the market mainly for professionals. Internet security is thus today two-speed: pretty strong security for professionals or private individuals anxious to protect their computer equipments and no security for professionals or private individuals who can not afford security products and do no have sufficient technical expertise to set up cheap solutions by themselves. In this context, this paper targets the provision of a minimum security level within internet by defining a PKI solution based on LDAP and DNS (extended with DNSSEC). The originality of the paper is related to the design of the chain of trust that is built over both LDAP and DNSSEC PKIs, the certificate verification method, and indications to extend those concepts to the secure emailing application","PeriodicalId":202819,"journal":{"name":"Fourth European Conference on Universal Multiservice Networks (ECUMN'07)","volume":"59 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-02-14","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Fourth European Conference on Universal Multiservice Networks (ECUMN'07)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ECUMN.2007.3","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
After decades of expansion, Internet became an essential tool useful for professionals and private individuals providing a large range of services like entailing, management of bank accounts, reservation of hotels, train time schedules, real time traffic information, Internet search... If not targeted at the beginning, information system security became rapidly a key challenge for professionals and strong security solutions emerged on the market mainly for professionals. Internet security is thus today two-speed: pretty strong security for professionals or private individuals anxious to protect their computer equipments and no security for professionals or private individuals who can not afford security products and do no have sufficient technical expertise to set up cheap solutions by themselves. In this context, this paper targets the provision of a minimum security level within internet by defining a PKI solution based on LDAP and DNS (extended with DNSSEC). The originality of the paper is related to the design of the chain of trust that is built over both LDAP and DNSSEC PKIs, the certificate verification method, and indications to extend those concepts to the secure emailing application