Abstract
Nowadays, X.509 certificate is largely used to prove its holder identity in open networks. Then, the relying party (RP) needs an automated mechanism for evaluating its trustworthiness in order to decide whether to accept it or not. In this context, we provide him with this mechanism allowing him to decide if he should trust in a received certificate or not. In our previous work, we have proposed an architecture for calculating a certificate trust level. Using a defined algorithm, this level is computed depending on three parameters: the calculated trust level of certificate authority (CA), the certificate policy quality, and the rating of the certificate fields. In this paper, we improve the algorithm used to calculate a CA trust level on the basis of trust level of the CAs that had issued certificates for it and their extension fields. By this way, the calculated trust level reflects a real trustworthiness of certificate because it is computed on the basis of the real factors influencing this trustworthiness. It is then more relevant for a relying party when deciding whether to accept a received certificate or not.
Author supplied keywords
Cite
CITATION STYLE
El Uahhabi, Z., & El Bakkali, H. (2018). Trust assessment of X.509 certificate based on certificate authority trustworthiness and its certificate policy. In International Journal of Internet Technology and Secured Transactions (Vol. 8, pp. 103–136). Inderscience Publishers. https://doi.org/10.1504/IJITST.2018.092139
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.