• DocumentCode
    2384114
  • Title

    X.509 identity certificates with local verification

  • Author

    Bauer, Christian

  • Author_Institution
    German Aerosp. Center (DLR), Inst. of Commun. & Navig., Wessling, Germany
  • fYear
    2012
  • fDate
    10-15 June 2012
  • Firstpage
    6727
  • Lastpage
    6732
  • Abstract
    Authentication in various communication systems and protocols is often based on X.509 identity certificates. The verification of these certificates requires a global trust anchor (certificate authority) that is accepted by the communication partners that attempt to authenticate to each other. The nonavailability of the services of this trust anchor, especially certificate revocation services, prevents successful authentication and communication. The trust anchor therefore constitutes a single point of failure. This is not acceptable for mission-critical communication systems such as the future aeronautical telecommunications network that will support air traffic control. Within this paper, an extension to X.509 identity certificates is proposed that allows the authenticating partners to verify each other´s certificate without a global trust anchor. Instead, a distributed architecture is introduced where communication partners only require the services of a local trust anchor. No intertrust domain operations are therefore required for the verification of our extended certificate format.
  • Keywords
    air traffic control; aircraft communication; cryptographic protocols; X.509 identity certificates; aeronautical telecommunications network; air traffic control; authentication; certificate authority; communication partners; distributed architecture; mission-critical communication systems; protocols; trust anchor; Aircraft; Authentication; IP networks; Protocols; Public key; Runtime; Standards;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communications (ICC), 2012 IEEE International Conference on
  • Conference_Location
    Ottawa, ON
  • ISSN
    1550-3607
  • Print_ISBN
    978-1-4577-2052-9
  • Electronic_ISBN
    1550-3607
  • Type

    conf

  • DOI
    10.1109/ICC.2012.6364723
  • Filename
    6364723