首页> 外文OA文献 >Verifiable Light-Weight Monitoring for Certificate Transparency Logs
【2h】

Verifiable Light-Weight Monitoring for Certificate Transparency Logs

机译:证书透明度日志的可验证轻量级监控

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Trust in publicly verifiable Certificate Transparency (CT) logs is reducedthrough cryptography, gossip, auditing, and monitoring. The role of a monitoris to observe each and every log entry, looking for suspicious certificatesthat interest the entity running the monitor. While anyone can run a monitor,it requires continuous operation and copies of the logs to be inspected. Thishas lead to the emergence of monitoring-as-a-service: a trusted party runs themonitor and provides registered subjects with selective certificatenotifications, e.g., "notify me of all foo.com certificates". We present aCT/bis extension for verifiable light-weight monitoring that enables subjectsto verify the correctness of such notifications, reducing the trust that isplaced in these monitors. Our extension supports verifiable monitoring ofwild-card domains and piggybacks on CT's existing gossip-audit security model.
机译:信任在公开可验证的证书透明度(CT)日志是降级加密,八卦,审计和监控。监视器的角色观察每个日志条目,寻找可疑证书的兴趣,实体运行监视器。虽然任何人都可以运行监视器,但它需要持续的操作和要检查日志的副本。这条哈斯导致了监测AS-Serve的出现:可信任的方运行主题,并提供有选择性证书的注册主题,例如,“通知我所有Foo.com证书”。我们提出了可验证轻量级监控的ACT / BIS扩展,使主题验证了这些通知的正确性,降低了这些监视器中剥离的信任。我们的扩展支持在CT现有的Gossip-Audit Security模型上进行可核实的核磁卡域和背驮式监控。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号