TWC: Medium: Collaborative: Measuring and Improving the Management of Today's PKI

TWC:媒介:协作:衡量和改进当今 PKI 的管理

基本信息

  • 批准号:
    1563320
  • 负责人:
  • 金额:
    $ 59.9万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2016
  • 资助国家:
    美国
  • 起止时间:
    2016-07-01 至 2020-06-30
  • 项目状态:
    已结题

项目摘要

The Public Key Infrastructure (PKI), along with the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, are responsible for securing Internet transactions such as banking, email, and e-commerce; they provide users with the ability to verify with whom they are communicating online, and enable encryption of those communications. While the use of the PKI is mostly automated, there is a surprising amount of human intervention in management tasks that are crucial to its proper operation. As a result, there have been numerous instances where mismanagement of the PKI has harmed the security of end users. This project is developing techniques to better understand and improve the management of the PKI, helping to better secure the Internet.This project has four research foci, each examining the management challenges faced by different players in the PKI: Content Distribution Network (CDN) administrators, Certificate Authorities (CAs), end-users, and non-Web protocols. First, the project is conducting measurements to better understand the frequency of sharing private keys between sites and their CDNs, and to improve the security of this practice. Second, the project is developing new incentives for CAs to ensure information about their revoked certificates reach end users. Third, the project is aiming to better understand how the PKI will evolve as the Internet of Things (IoT) grows and the PKI is forced to quickly scale up. Fourth, the project will expand existing measurement approaches to understand the difficulties of PKI management in non-Web protocols (e.g., IMAPS), which have traditionally been less-well maintained.
公钥基础设施(PKI)以及安全套接字层(SSL)和传输层安全(TLS)协议负责保护互联网交易,如银行、电子邮件和电子商务;它们为用户提供了验证在线通信对象的能力,并支持对这些通信进行加密。虽然PKI的使用主要是自动化的,但在管理任务中仍有大量的人为干预,这些干预对PKI的正确操作至关重要。因此,出现了许多PKI管理不善损害最终用户安全的情况。这个项目正在开发技术,以更好地理解和改善PKI的管理,帮助更好地保护互联网。该项目有四个研究重点,每个重点都研究了PKI中不同参与者所面临的管理挑战:内容分发网络(CDN)管理员、证书颁发机构(ca)、最终用户和非web协议。首先,该项目正在进行测量,以更好地了解站点与其cdn之间共享私钥的频率,并提高这种做法的安全性。其次,该项目正在为证书颁发机构制定新的激励措施,以确保有关其被吊销证书的信息能够传达给最终用户。第三,该项目旨在更好地了解PKI将如何随着物联网(IoT)的发展而发展,以及PKI被迫快速扩展。第四,该项目将扩展现有的测量方法,以了解非web协议(例如IMAPS)中PKI管理的困难,这些协议传统上维护得不太好。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Alan Mislove其他文献

Machine behaviour
机器行为
  • DOI:
    10.1038/s41586-019-1138-y
  • 发表时间:
    2019-04-24
  • 期刊:
  • 影响因子:
    48.500
  • 作者:
    Iyad Rahwan;Manuel Cebrian;Nick Obradovich;Josh Bongard;Jean-François Bonnefon;Cynthia Breazeal;Jacob W. Crandall;Nicholas A. Christakis;Iain D. Couzin;Matthew O. Jackson;Nicholas R. Jennings;Ece Kamar;Isabel M. Kloumann;Hugo Larochelle;David Lazer;Richard McElreath;Alan Mislove;David C. Parkes;Alex ‘Sandy’ Pentland;Margaret E. Roberts;Azim Shariff;Joshua B. Tenenbaum;Michael Wellman
  • 通讯作者:
    Michael Wellman

Alan Mislove的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Alan Mislove', 18)}}的其他基金

Collaborative Research: SaTC: CORE: Medium: Cryptographic accumulators and revocation of credentials
协作研究:SaTC:核心:中:加密累加器和凭证撤销
  • 批准号:
    2247307
  • 财政年份:
    2023
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
CNS Core: Large: Collaborative Research: Towards an Evolvable Public Key Infrastructure
CNS 核心:大型:协作研究:迈向可进化的公钥基础设施
  • 批准号:
    1900879
  • 财政年份:
    2019
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Continuing Grant
SaTC: CORE: Medium: Collaborative Research: Understanding and Mitigating the Privacy and Societal Risks of Advanced Advertising Targeting and Tracking
SaTC:核心:媒介:协作研究:理解和减轻高级广告定位和跟踪的隐私和社会风险
  • 批准号:
    1916020
  • 财政年份:
    2019
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
NeTS: Small: Collaborative Research: Leveraging Personalized Internet Services to Combat Online Trolling
NetS:小型:协作研究:利用个性化互联网服务打击在线恶搞
  • 批准号:
    1616234
  • 财政年份:
    2016
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Small: Towards Robust Crowd Computations
TWC:小型:迈向稳健的群体计算
  • 批准号:
    1421444
  • 财政年份:
    2014
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
CSR: Medium: Collaborative Research: Towards Finer-grained Cloud Computing
CSR:媒介:协作研究:迈向更细粒度的云计算
  • 批准号:
    1409191
  • 财政年份:
    2014
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Continuing Grant
CSR: Small: Towards Confederated Web-Based Services
CSR:小型:迈向基于 Web 的联合服务
  • 批准号:
    1319019
  • 财政年份:
    2013
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
CAREER: Systems for the emerging patterns of content exchange
职业:新兴内容交换模式的系统
  • 批准号:
    1054233
  • 财政年份:
    2011
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Continuing Grant
NetSE: Medium: Collaborative Research: Privacy Preserving Social Systems
NetSE:媒介:协作研究:隐私保护社会系统
  • 批准号:
    0964465
  • 财政年份:
    2010
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant

相似海外基金

TWC SBE: Medium: Collaborative: Brain Hacking: Assessing Psychological and Computational Vulnerabilities in Brain-based Biometrics
TWC SBE:媒介:协作:大脑黑客:评估基于大脑的生物识别技术中的心理和计算漏洞
  • 批准号:
    1840790
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Continuing Grant
TWC: Medium: Collaborative: Black-Box Evaluation of Cryptographic Entropy at Scale
TWC:媒介:协作:大规模密码熵的黑盒评估
  • 批准号:
    1937622
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC SBE: Medium: Collaborative: Building a Privacy-Preserving Social Networking Platform from a Technological and Sociological Perspective
TWC SBE:媒介:协作:从技术和社会学角度构建保护隐私的社交网络平台
  • 批准号:
    1855391
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: Systems, Tools, and Techniques for Executing, Managing, and Securing SGX Programs
TWC:媒介:协作:用于执行、管理和保护 SGX 程序的系统、工具和技术
  • 批准号:
    1834213
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: Efficient Repair of Learning Systems via Machine Unlearning
TWC:媒介:协作:通过机器取消学习有效修复学习系统
  • 批准号:
    1854000
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: Seal: Secure Engine for AnaLytics - From Secure Similarity Search to Secure Data Analytics
TWC:媒介:协作:Seal:AnaLytics 的安全引擎 - 从安全相似性搜索到安全数据分析
  • 批准号:
    1929901
  • 财政年份:
    2018
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: TTP Option: Medium: Collaborative: MALDIVES: Developing a Comprehensive Understanding of Malware Delivery Mechanisms
TWC:TTP 选项:中:协作:马尔代夫:全面了解恶意软件传播机制
  • 批准号:
    1748127
  • 财政年份:
    2017
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC SBE: Medium: Collaborative: Dollars for Hertz: Making Trustworthy Spectrum Sharing Technically and Economically Viable
TWC SBE:媒介:协作:赫兹美元:使值得信赖的频谱共享在技术上和经济上可行
  • 批准号:
    1801986
  • 财政年份:
    2017
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: New Protocols and Systems for RAM-Based Secure Computation
TWC:媒介:协作:基于 RAM 的安全计算的新协议和系统
  • 批准号:
    1562888
  • 财政年份:
    2016
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: Systems, Tools, and Techniques for Executing, Managing, and Securing SGX Programs
TWC:媒介:协作:用于执行、管理和保护 SGX 程序的系统、工具和技术
  • 批准号:
    1563848
  • 财政年份:
    2016
  • 资助金额:
    $ 59.9万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了