Trust assessment of X.509 certificate based on certificate authority trustworthiness and its certificate policy

3Citations
Citations of this article
9Readers
Mendeley users who have this article in their library.

Abstract

Nowadays, X.509 certificate is largely used to prove its holder identity in open networks. Then, the relying party (RP) needs an automated mechanism for evaluating its trustworthiness in order to decide whether to accept it or not. In this context, we provide him with this mechanism allowing him to decide if he should trust in a received certificate or not. In our previous work, we have proposed an architecture for calculating a certificate trust level. Using a defined algorithm, this level is computed depending on three parameters: the calculated trust level of certificate authority (CA), the certificate policy quality, and the rating of the certificate fields. In this paper, we improve the algorithm used to calculate a CA trust level on the basis of trust level of the CAs that had issued certificates for it and their extension fields. By this way, the calculated trust level reflects a real trustworthiness of certificate because it is computed on the basis of the real factors influencing this trustworthiness. It is then more relevant for a relying party when deciding whether to accept a received certificate or not.

Cite

CITATION STYLE

APA

El Uahhabi, Z., & El Bakkali, H. (2018). Trust assessment of X.509 certificate based on certificate authority trustworthiness and its certificate policy. In International Journal of Internet Technology and Secured Transactions (Vol. 8, pp. 103–136). Inderscience Publishers. https://doi.org/10.1504/IJITST.2018.092139

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free