Calculating Trust Level of X.509 Certificates

Zakia El Uahhabi, Hanan El Bakkali · Journal of Internet Technology and Secured Transaction · 2016

The X.509 certificate is widely used by the organizations and people in order to confirm their identities in online transaction.It is created, signed, and issued by certificate authority (CA) following the procedures which are defined in a certificate policy.However, the deficiency in these procedures may create a trust lack in the certificate.Also, due to the CA failures or compromises, the risk of trusting a malicious certificate increase.Then, relying party (RP) should verify certificate trustworthiness in order to accept it or not.In reality, it is difficult for RP who hasn't the technical competences to judge it.In this context, he needs an automated mechanism for evaluating a certificate trust level.In this paper, we provide him this mechanism.In fact, we suggest a new architecture for calculating a certificate trust.A proposed algorithm is used by this architecture and takes as input three parameters that are the rating of certification fields content, the certificate policy quality, and the calculated CA trust level.

Read the paper · More papers on PaperTik