TY - CHAP
T1 - New adaptive trust models against DDoS
T2 - Back-up CA and Mesh PKI
AU - Lee, Jaeil
AU - Lee, Minsoo
AU - Gu, Jabeom
AU - Lee, Seoklae
AU - Park, Sehyun
AU - Song, Jooseok
PY - 2003
Y1 - 2003
N2 - Most of Public Key Infrastructures (PKIs) are based on the ITU-T X.509, and the top-down hierarchical structure is extensively employed for the PKI community. However, the prominent drawback of the hierarchical PKI structure is that the CAs can be the target of serious attacks such as Distributed Denial-of-Service (DDoS). In this paper, we present two new models, Back-up CA and Mesh PKI, to cope with such Internet attacks. The proposed Back-up CA sets up an alternative path when an original CA is under attack, consequently improving availability and flexibility. Mesh PKI is a collection of CAs dynamically linked by multiple peer-to-peer cross-certifications. The Mesh PKI is very attractive, not only because they are robust to attacks but also because they help to reduce overall certificate validation time and to balance the load across multiple CAs.
AB - Most of Public Key Infrastructures (PKIs) are based on the ITU-T X.509, and the top-down hierarchical structure is extensively employed for the PKI community. However, the prominent drawback of the hierarchical PKI structure is that the CAs can be the target of serious attacks such as Distributed Denial-of-Service (DDoS). In this paper, we present two new models, Back-up CA and Mesh PKI, to cope with such Internet attacks. The proposed Back-up CA sets up an alternative path when an original CA is under attack, consequently improving availability and flexibility. Mesh PKI is a collection of CAs dynamically linked by multiple peer-to-peer cross-certifications. The Mesh PKI is very attractive, not only because they are robust to attacks but also because they help to reduce overall certificate validation time and to balance the load across multiple CAs.
UR - http://www.scopus.com/inward/record.url?scp=26444621174&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=26444621174&partnerID=8YFLogxK
U2 - 10.1007/3-540-45036-x_83
DO - 10.1007/3-540-45036-x_83
M3 - Chapter
AN - SCOPUS:26444621174
SN - 3540404562
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 731
EP - 737
BT - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
A2 - Chung, Chin-Wan
A2 - Kim, Chong-Kwon
A2 - Kim, Won
A2 - Ling, Tok-Wang
A2 - Song, Kwan-Ho
PB - Springer Verlag
ER -