Trust-Rated Authentication for Domain-Structured Distributed Systems

  • Authors:
  • Ralph Holz;Heiko Niedermayer;Peter Hauck;Georg Carle

  • Affiliations:
  • Wilhelm-Schickard-Institut für Informatik, University of Tübingen, Germany;Wilhelm-Schickard-Institut für Informatik, University of Tübingen, Germany;Wilhelm-Schickard-Institut für Informatik, University of Tübingen, Germany;Wilhelm-Schickard-Institut für Informatik, University of Tübingen, Germany

  • Venue:
  • EuroPKI '08 Proceedings of the 5th European PKI workshop on Public Key Infrastructure: Theory and Practice
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present an authentication scheme and new protocol for domain-based scenarios with inter-domain authentication. Our protocol is primarily intended for domain-structured Peer-to-Peer systems but is applicable for any domain scenario where clients from different domains wish to authenticate to each other. To this end, we make use of Trusted Third Parties in the form of Domain Authentication Servers in each domain. These act on behalf of their clients, resulting in a four-party protocol. If there is a secure channel between the Domain Authentication Servers, our protocol can provide secure authentication. To address the case where domains do not have a secure channel between them, we extend our scheme with the concept of trust-rating. Domain Authentication Servers signal security-relevant information to their clients (pre-existing secure channel or not, trust, ...). The clients evaluate this information to decide if it fits the security requirements of their application.