An innovative policy-based cross certification methodology for public key infrastructures

  • Authors:
  • Valentina Casola;Antonino Mazzeo;Nicola Mazzocca;Massimiliano Rak

  • Affiliations:
  • Seconda Universita' di Napoli Dipartimento di Ingegneria dell'Informazione, Aversa (CE), Italy;Universita' degli Studi di Napoli, Federico II Dipartimento di Informatica e Sistemistica Naples, Italy;Universita' degli Studi di Napoli, Federico II Dipartimento di Informatica e Sistemistica Naples, Italy;Seconda Universita' di Napoli Dipartimento di Ingegneria dell'Informazione, Aversa (CE), Italy

  • Venue:
  • EuroPKI'05 Proceedings of the Second European conference on Public Key Infrastructure
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

Cross Certification among CAs is a very huge problem which is actually manually performed by security experts and organizational people, trying to understand if two CAs could cooperate. The evaluation process is based on the evaluation of the Certificate policies which are usually expressed in a not formalized (and native language) way. In this paper we propose a methodology to automatically evaluate and compare security policies for Cross Certification. The methodology consists in the formalization of a policy template and in the building of a reference evaluation model. The proposed approach can be applied on several models of Cross Certification.