question
play

Question Diffie Hellman Key Exchange protocol that we studied in - PowerPoint PPT Presentation

Question Diffie Hellman Key Exchange protocol that we studied in the last class is used to exchange: symmetric key or asymmetric key Question What is the mean/method that we studied to exchange asymmetric keys? Hint: If you


  1. Question • Diffie Hellman Key Exchange protocol that we studied in the last class is used to exchange:  symmetric key or  asymmetric key

  2. Question • What is the mean/method that we studied to exchange asymmetric keys?  Hint: If you don’t know key of Bob; ask Sam – the TTP

  3. Digital Certificate

  4. Digital Certificates • Digital Certificates are meant to communicate public keys • Issuer of a digital certificate vouches for the principal (subject of the certificate) to whom the certificate is issued • Anyone who trusts the certificate issuer, trusts the subject of the certificate

  5. Certification Authority (CA) • An organization that creates, publishes, and revokes certificates. • Verifies the information in the certificate, binds identities to cryptographic keys. – May outsource identity verification to registration authorities (RA) • Protects general security & policies of the system and its records. • Allows end user to check certificates so they can decide whether to use them in transactions. • Has one/more trusted Roots, called a trust anchor

  6. PKI – Public Key Infrastructure • A setup, meant for public key distribution, involving an interconnected , hierarchical , network of: – CA: certification authority – RA: registration authority

  7. Certificate Pinning

  8. Certificate Pinning Certificate Pinning: Process of hard-coding/inserting a certificate into the trust zone of a computer / application / browsers, etc.

  9. Hierarchy of CA

  10. Top-Down flow of Implicit Trust

  11. Islands of Trust

  12. Cross-Certification as Trust Delegation

  13. Exercise • I have a certificate issued from IIT Bombay • You have a certificate issued from IIT Jodhpur  What are the conditions under which my trust is implied on your certificate?

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend