Ending Trust in Certificates

There are hundreds of thousands of certificates floating around. The whole premise of certificates is that multiple parties trust a central certificate authority. This form of security and verification is not without issues.

provided by: 
Originally published at Internet.com


By Kurt Seifried (seifried@securityportal.com) for SecurityPortal ----------------------------------- There are hundreds of thousands of certificates floating around. The whole premise of certificates is that multiple parties trust a central certificate authority. This form of security and verification is not without issues.

For a while now I've been writing articles about SSL. I've outlined various problems, and explained why SSL in general is a poor solution that should be improved (before we start doing things like online voting - yikes). The whole premise of certificates is that multiple parties trust a central certificate authority (CA), so that when Alice wants to talk to Bob they can verify each others' certificates through the CA - in theory proving they are actually taking to the person they claim to be.

This CA has a very important job, especially so with the use of X.509 certificates (currently the most common for SSL, smartcards and so on). Unlike PGP or GnuPG, for example, where you can have multiple entities sign a certificate (such as your mother, your boss, the post office, etc.), with X.509 you are limited to one only. Because X.509 certificates can only be signed by one entity you ultimately have to place all your trust in the signing entity...

Read article at Internet.com site
Related Article
- Email Filtering: The Real Deal
Email is probably the favorite Internet related service for most. It's also the one that causes the most problems, with regard to security. People cannot live without email anymore. Most Internet spam is now delivered by email, and more importantly, most viruses are now spread via email.
Regional Articles
- Ending Trust in Certificates Alabama
- Ending Trust in Certificates Alaska
- Ending Trust in Certificates Arizona
- Ending Trust in Certificates Arkansas
- Ending Trust in Certificates California
- Ending Trust in Certificates Colorado
- Ending Trust in Certificates Connecticut
- Ending Trust in Certificates DC
- Ending Trust in Certificates Delaware
- Ending Trust in Certificates Florida
- Ending Trust in Certificates Georgia
- Ending Trust in Certificates Hawaii
- Ending Trust in Certificates Idaho
- Ending Trust in Certificates Illinois
- Ending Trust in Certificates Indiana
- Ending Trust in Certificates Iowa
- Ending Trust in Certificates Kansas
- Ending Trust in Certificates Kentucky
- Ending Trust in Certificates Louisiana
- Ending Trust in Certificates Maine
- Ending Trust in Certificates Maryland
- Ending Trust in Certificates Massachusetts
- Ending Trust in Certificates Michigan
- Ending Trust in Certificates Minnesota
- Ending Trust in Certificates Mississippi
- Ending Trust in Certificates Missouri
- Ending Trust in Certificates Montana
- Ending Trust in Certificates Nebraska
- Ending Trust in Certificates Nevada
- Ending Trust in Certificates New Hampshire
- Ending Trust in Certificates New Jersey
- Ending Trust in Certificates New Mexico
- Ending Trust in Certificates New York
- Ending Trust in Certificates North Carolina
- Ending Trust in Certificates North Dakota
- Ending Trust in Certificates Ohio
- Ending Trust in Certificates Oklahoma
- Ending Trust in Certificates Oregon
- Ending Trust in Certificates Pennsylvania
- Ending Trust in Certificates Rhode Island
- Ending Trust in Certificates South Carolina
- Ending Trust in Certificates South Dakota
- Ending Trust in Certificates Tennessee
- Ending Trust in Certificates Texas
- Ending Trust in Certificates Utah
- Ending Trust in Certificates Vermont
- Ending Trust in Certificates Virginia
- Ending Trust in Certificates Washington
- Ending Trust in Certificates West Virginia
- Ending Trust in Certificates Wisconsin
- Ending Trust in Certificates Wyoming
Related Article
- Email Filtering: The Real Deal
Email is probably the favorite Internet related service for most. It's also the one that causes the most problems, with regard to security. People cannot live without email anymore. Most Internet spam is now delivered by email, and more importantly, most viruses are now spread via email.

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Architecture & Design Languages & Tools Project Management Web Services
Database Microsoft & .NET Security Wireless
Java Open Source Techniques XML