A PKI Approach Targeting the Provision of a Minimum Security Level within Internet

Maryline Laurent-Maknavicius
2007 Fourth European Conference on Universal Multiservice Networks (ECUMN'07)  
After decades of expansion, Internet became an essential tool useful for professionals and private individuals providing a large range of services like emailing, management of bank accounts, reservation of hotels, train time schedules, real time traffic information, Internet search... If not targeted at the beginning, Information System Security became rapidly a key challenge for professionals and strong security solutions emerged on the market mainly for professionals. Internet security is
more » ... today twospeed: pretty strong security for professionals or private individuals anxious to protect their computer equipments and no security for professionals or private individuals who can not afford security products and do no have sufficient technical expertise to set up cheap solutions by themselves. In this context, this paper targets the provision of a minimum security level within Internet by defining a PKI solution based on LDAP and DNS (extended with DNSSEC). The originality of the paper is related to the design of the chain of trust that is built over both LDAP and DNSSEC PKIs, the certificate verification method, and indications to extend those concepts to the secure emailing application.
doi:10.1109/ecumn.2007.3 dblp:conf/ecumn/Laurent-Maknavicius07 fatcat:kpnvqd5awfcg7hzog46k5icrcy