Management of Public Keys
Keith M. Martin · 2025
Abstract This chapter discusses particular issues that arise for the management of asymmetric public keys. The fundamental challenges with managing public keys are first outlined. The most common approach to management of public keys is the use of public-key certificates, which is the focus of most of the chapter. The lifecycle of a public-key certificate is introduced. Certificate issuance is then considered, explaining the different roles of certificate and registration authorities. Different techniques for public-key certificate revocation are then discussed. A number of models for public-key certificate management are then compared, including the use of certificate hierarchies, cross-certification, and a case study based on Transport Layer Security (TLS) certificates used to support secure web browsing. Finally, some alternatives to the use of public-key certificates are explored, including webs of trust and the use of identity-based cryptography.