Associative Blockchain for Decentralized PKI Transparency

نویسندگان

چکیده

The conventional public key infrastructure (PKI) model, which powers most of the Internet, suffers from an excess trust into certificate authorities (CAs), compounded by a lack transparency makes it vulnerable to hard-to-detect targeted stealth impersonation attacks. Existing approaches make issuance more transparent, including ones based on blockchains, are still somewhat centralized. We present decentralized PKI (DPKIT): client-based approach enforcing in and revocation while eliminating single points failure. DPKIT efficiently leverages existing blockchain realize append-only, distributed associative array, allows anyone (or their browser) audit update history all publicly issued certificates revocations for any domain. Our technical contributions include definitions append-only ledgers, security model transparency, formal analysis our construction with respect same. Intended as client-side browser extension, will be effective at fraud detection prosecution, even under fledgling user adoption, better coverage privacy than federated observatories, such Google’s or Electronic Frontier Foundation’s.

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Backing Rich Credentials with a Blockchain PKI∗

This is the second of a series of papers describing the results of a project whose goal was to identify five remote identity proofing solutions that can be used as alternatives to knowledge-based verification. This paper describes the second solution, which makes use of a rich credential adapted for use on a blockchain and backed by a blockchain PKI. A rich credential, also used in Solution 1, ...

متن کامل

Privacy-awareness in Blockchain-based PKI

Conventional public key infrastructure (PKI) designs are not optimal and contain security flaws; there is much work underway in improving PKI. The properties given by the Bitcoin blockchain and its derivatives are a natural solution to some of the problems with PKI in particular, certificate transparency and elimination of single points of failure. Recently-proposed blockchain PKI designs are b...

متن کامل

Metadisk: Blockchain-Based Decentralized File Storage Application

Metadisk is an open source software project seeking to prove conceptually that cloud storage applications can be made more decentralized, more secure, and more efficient. In addition, Metadisk provides a prototyping platform for a fully decentralized network. In pursuit of this goal, we propose developing a web application that provides an interface for non-technical users, and an underlying AP...

متن کامل

Greenpass: Decentralized, PKI-based Authorization for Wireless LANs∗

In Dartmouth’s ”Greenpass” project, we’re building an experimental system to explore two levels of authorization issues in the emerging information infrastructure. On a practical level, we want to enable only authorized users to access an internal wireless network—while also permitting appropriate users to delegate internal access to external guests, and doing this all with standard client soft...

متن کامل

CrowdBC: A Blockchain-based Decentralized Framework for Crowdsourcing

Crowdsourcing systems which utilize the human intelligence to solve complex tasks have gained considerable interest and adoption in recent years. However, the majority of existing crowdsourcing systems rely on central servers, which are subject to the weaknesses of traditional trust-based model, such as single point of failure. They are also vulnerable to distributed denial of service (DDoS) an...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Cryptography

سال: 2021

ISSN: ['2410-387X']

DOI: https://doi.org/10.3390/cryptography5020014