Virtual Software Tokens - A Practical Way to Secure PKI Roaming

  • Authors:
  • Taekyoung Kwon

  • Affiliations:
  • -

  • Venue:
  • InfraSec '02 Proceedings of the International Conference on Infrastructure Security
  • Year:
  • 2002

Quantified Score

Hi-index 0.00

Visualization

Abstract

A public key infrastructure (PKI) plays an important role in utilizing a digital certificate as user's digital identifier in a reliable manner. Due to the users' demands for using their digital identifiers in places, a need for PKI roaming is rapidly growing in such a promising infrastructure. Cooperating with multiple servers must be a practical way to secure PKI roaming in software-based environments. This paper describes a new method of running RSA algorithms with a multitude of servers, in a way that a human user keeps an ID and password pair only. Our basic idea is to hide a real ID and split a password as well as a private exponent over multiple servers, so as to generate signatures or decrypt messages via the so-called virtual software tokens.