Dynamic fingerprints: improving the usability of peer-to-peer authentication
نویسنده
چکیده
Peer-to-peer technology and wireless networking offer great potential for working together away from the desk – but they also introduce unique security challenges. A key aspect of that security is ensuring the identity of a peer user in the network (i.e., authentication) when standard server-based mechanisms are not available. Authentication is meant to foil the eavesdropping intruder who masquerades as a valid user (the socalled man in the middle attack). Peer-to-peer authentication methods rely on an out-of-band method for comparing some shared identity information. In public-key-infrastructure systems, this is a compressed version of the peer’s certificate (called a certificate digest or a digital fingerprint). However, these digital fingerprints are still too large to easily compare and the resulting poor usability means this step is often skipped, defeating the authentication. We describe a system and method for reducing the size of a digital fingerprint using an algorithm that incorporates a dynamic random nonce generated at run-time. This approach is shown mathematically to retain the security of previous authentication methods. In addition we present a user interface method for representing the smaller fingerprint in a variety of easily comparable and verifiable forms. The resulting authentication procedure requires less time, is easier to use, and runs on desktop, laptop and handheld devices. While this method is of critical importance to mobile workgroups who have limited or no access to a fixed security and network infrastructure, it is equally effective for any system using certificate-based peer-to-peer authentication.
منابع مشابه
A Distributed Authentication Model for an E-Health Network Using Blockchain
Introduction: One of the most important and challenging areas under the influence of information technology is the field of health. This pervasive influence has led to the development of electronic health (e-health) networks with a variety of services of different qualities. The issue of security management, maintaining confidentiality and data integrity, and exchanging it in a secure environme...
متن کاملA Distributed Authentication Model for an E-Health Network Using Blockchain
Introduction: One of the most important and challenging areas under the influence of information technology is the field of health. This pervasive influence has led to the development of electronic health (e-health) networks with a variety of services of different qualities. The issue of security management, maintaining confidentiality and data integrity, and exchanging it in a secure environme...
متن کاملImproving Email Trustworthiness through Peer-to-peer Sender Authentication
The increasing use of email for phishing and unsolicited marketing has reduced the trustworthiness of email as a communication medium. Sender authentication is a known defense against these attacks. The existing proposals for sender authentication either require infrastructural support or break compatibility with existing email infrastructure. We propose, implement, and evaluate Peer-toPeer Sen...
متن کاملThe Comparative Effects of Self-assessment and Peer Feedback on Improving Translation Quality
This study investigated the effect of self-assessment and peer-assessment on the quality of students’ transla- tion. Participants of the study were 60 male and female students. They were selected from the senior stu- dents studying English Translation and divided into two groups: self-assessment and peer-assessment. The study adopted a pretest-posttest design, and students’ translation quality ...
متن کاملنقش حمایت همسالان از دانشآموزان با ناتوانی در آموزش فراگیر
Peer interaction and peer support contribute to the social development of people with disabilities and have a positive impact on improving their quality of life in the long term. Peer support is effective in increasing adjustment and increasing the quality and quantity of opportunities for participation in the classroom. However, students with disabilities in gaining peer support and acceptatio...
متن کامل