DocumentCode
2384114
Title
X.509 identity certificates with local verification
Author
Bauer, Christian
Author_Institution
German Aerosp. Center (DLR), Inst. of Commun. & Navig., Wessling, Germany
fYear
2012
fDate
10-15 June 2012
Firstpage
6727
Lastpage
6732
Abstract
Authentication in various communication systems and protocols is often based on X.509 identity certificates. The verification of these certificates requires a global trust anchor (certificate authority) that is accepted by the communication partners that attempt to authenticate to each other. The nonavailability of the services of this trust anchor, especially certificate revocation services, prevents successful authentication and communication. The trust anchor therefore constitutes a single point of failure. This is not acceptable for mission-critical communication systems such as the future aeronautical telecommunications network that will support air traffic control. Within this paper, an extension to X.509 identity certificates is proposed that allows the authenticating partners to verify each other´s certificate without a global trust anchor. Instead, a distributed architecture is introduced where communication partners only require the services of a local trust anchor. No intertrust domain operations are therefore required for the verification of our extended certificate format.
Keywords
air traffic control; aircraft communication; cryptographic protocols; X.509 identity certificates; aeronautical telecommunications network; air traffic control; authentication; certificate authority; communication partners; distributed architecture; mission-critical communication systems; protocols; trust anchor; Aircraft; Authentication; IP networks; Protocols; Public key; Runtime; Standards;
fLanguage
English
Publisher
ieee
Conference_Titel
Communications (ICC), 2012 IEEE International Conference on
Conference_Location
Ottawa, ON
ISSN
1550-3607
Print_ISBN
978-1-4577-2052-9
Electronic_ISBN
1550-3607
Type
conf
DOI
10.1109/ICC.2012.6364723
Filename
6364723
Link To Document