12
Public Key Infrastructure in EBusiness By Umair Ali

Public Key Infrastructure in EBusiness

  • Upload
    riva

  • View
    42

  • Download
    0

Embed Size (px)

DESCRIPTION

Public Key Infrastructure in EBusiness. By Umair Ali. Introduction. PKI - a security architecture – over the internet. Provides an increased level of confidence for exchanging information. architecture addresses confidentiality, integrity, non-repudiation and authorization of data. - PowerPoint PPT Presentation

Citation preview

Page 1: Public Key Infrastructure in  EBusiness

Public Key Infrastructurein

EBusiness

ByUmair Ali

Page 2: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

-PKI - a security architecture – over the internet.

-Provides an increased level of confidence for exchanging information.

- architecture addresses confidentiality, integrity, non-repudiation and

authorization of data.

-Supports the distribution, management, expiration, rollover, backup,

revoking of public and private keys

Introduction

Page 3: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Components of PKI

• The End-Entities (EE) – end user or an application.

• The Certificate Authority (CA) – third party assigns certificates

• The Certificate Repository (CR) - stores certificates that are issued and also revoked certificates

• The Registration Authority (RA) – optional component

• Digital Certificates (X.509 V3) -

Page 4: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Implementation steps

– Gather information

– Make decision

– Choose PKI vendors

– Prepare infrastructure

– Implement PKI

Page 5: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

• also known as multi vendor interoperability – where different technologies from different vendors are used by different clients including different applications.

• Interoperability helps to support transactions between different parties that use different technology supplied by the different vendors

PKI interoperability

Page 6: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

- Different policies for issued certificates

- Different features in PKI applications

- Different certificate storage and retrieval standards

- Different X.509 extensions

- Different obligations on certificate subjects

- Different PKI knowledge among organizational staff

PKI interoperability - Issues

Page 7: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

• Hierarchical model

• Peer to Peer model also known as Mesh Model

• Bridge Model

Interoperability Model

Page 8: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Hierarchical Model

http://www.galexia.com/public/research/assets/pki_interoperability_models_2005/pki_interoperability_models_2005-4_1_.html

Page 9: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Cross-Certification (Mesh) Model

http://www.galexia.com/public/research/assets/pki_interoperability_models_2005/pki_interoperability_models_2005-4_1_.html

Page 10: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Bridge Model

http://www.galexia.com/public/research/assets/pki_interoperability_models_2005/pki_interoperability_models_2005-4_1_.html

Page 11: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Current important PKI Designs

• Europe - ISA

• OASIS PKI Forum

• The Asia PKI Forum

• APEC

Page 12: Public Key Infrastructure in  EBusiness

Dec 2004Version 1

Thank you for your attention

You questionMy

Answer