Rethinking Public Key Infrastructures and Digital Certificates: Building in Privacy

简介:
随着基于纸张的通信和交易机制被自动化机制取代,传统的安全形式,如照片和手写签名正在变得过时。大多数安全专家认为,数字证书是保护电子通信的最佳技术。它们已经广泛用于对电子邮件和软件进行身份验证和加密,并最终将内置到必须能够安全通信的任何设备或软件中。然而,这种不可避免的趋势存在一个严重的问题: 除非采取严厉措施,否则每个人都将被迫通过有史以来最普遍的电子监视工具进行通信。黑客,不道德的员工,政府机构,金融机构,保险公司等也将有大量滥用数字证书的机会。
在本书中,Stefan Brands提出了用于数字证书设计的加密构建块,该数字证书在不牺牲安全性的情况下保护隐私。此类证书的功能与电影票或地铁令牌的功能大致相同: 任何人都可以确定其有效性和指定的数据,但不超过此。此外,不能链接同一个人的不同动作。
证书持有人可以控制披露哪些信息以及向谁披露。所提出的密码构建块的子集可以组合使用,从而允许使用食谱方法来设计公钥基础设施。潜在的应用包括电子现金,电子邮资,数字版权管理,在线聊天室的假名,医疗保健信息存储,电子投票,甚至电子赌博。
英文简介:
As paper-based communication and transaction mechanisms are replaced by automated ones, traditional forms of security such as photographs and handwritten signatures are becoming outdated. Most security experts believe that digital certificates offer the best technology for safeguarding electronic communications. They are already widely used for authenticating and encrypting email and software, and eventually will be built into any device or piece of software that must be able to communicate securely.
There is a serious problem, however, with this unavoidable trend: unless drastic measures are taken, everyone will be forced to communicate via what will be the most pervasive electronic surveillance tool ever built. There will also be abundant opportunity for misuse of digital certificates by hackers, unscrupulous employees, government agencies, financial institutions, insurance companies, and so on.
In this book Stefan Brands proposes cryptographic building blocks for the design of digital certificates that preserve privacy without sacrificing security. Such certificates function in much the same way as cinema tickets or subway tokens: anyone can establish their validity and the data they specify, but no more than that. Furthermore, different actions by the same person cannot be linked.
Certificate holders have control over what information is disclosed, and to whom. Subsets of the proposed cryptographic building blocks can be used in combination, allowing a cookbook approach to the design of public key infrastructures. Potential applications include electronic cash, electronic postage, digital rights management, pseudonyms for online chat rooms, health care information storage, electronic voting, and even electronic gambling.
- 书名
- Rethinking Public Key Infrastructures and Digital Certificates: Building in Privacy
- 译名
- 重新思考公钥基础设施和数字证书:建立隐私保护
- 语言
- 英语
- 年份
- 1999
- 页数
- 156页
- 大小
- 112.57 MB
- 下载
Rethinking Public Key Infrastructures and Digital Certificates: Building in Privacy.pdf
- 密码
- 65536
最后更新:2025-04-12 23:54:37