Summary
The paper gives an introduction to certificates as authentication mediums and their security storages. An appropriate cryptographic background is also stated. A scenario for using certificates and their security storages is presented. The scenario was practically implemented. The main goal is a detailed description of an authentication process held in a web environment. Certificates with matching private keys and hardware cryptographic devices are involved in the authentication process. The description is mainly aimed at certificates, hardware cryptographic devices and their usage in significant parts of a secured connection establishment.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
Menezes, A.J., Oorschot, P.C.V., Vanstone, S.A.: Handbook of Applied Cryptography. CRC Press, Boca Raton (1996)
Housley, R., Polk, W., Ford, W., Solo, D.: Rfc 3280 – internet x.509 public key infrastructure certificate and certificate revocation list (crl) profile (2002), http://tools.ietf.org/html/rfc3280
Cooper, M., Dzambasow, Y., Hesse, P., Joseph, S., Nicholas, R.: Rfc 4158 – internet x.509 public key infrastructure: Certification path building (2005), http://tools.ietf.org/html/rfc4158
ITU-T Recommendation X.680, Information technology – Abstract Syntax Notation One (asn.1): Specification of basic notation (2002), http://tools.ietf.org/html/rfc1421
ITU-T Recommendation x.690, Information technology – ASN.1 encoding rules: Specification of Basic Encoding Rules (BER), Canonical Encoding Rules (CER) and distinguished encoding rules (DER) (2002), http://www.itu.int/ITU-T/studygroups/com17/languages/X.690-0207.pdf
Josefsson, S.: RFC 4648 – The Base16, Base32, and Base64 Data Encodings (2006), http://tools.ietf.org/html/rfc4648
Linn, J.: RFC 1421 – Privacy Enhancement for Internet Electronic Mail: Part I: Message Encryption and Authentication Procedures (1993), http://tools.ietf.org/html/rfc1421
RSA Laboratories – Public-Key Cryptography Standards (PKCS) (2010), http://www.rsa.com/rsalabs/node.asp?id=2124
RSA Laboratories – PKCS #7: Cryptographic Message Syntax Standard (2010), http://www.rsa.com/rsalabs/node.asp?id=2129
RSA Laboratories – PKCS #12: Personal Information Exchange Syntax Standard (2010), http://www.rsa.com/rsalabs/node.asp?id=2138
OpenSSL. The Open Source Toolkit for SSL/TLS (2009), http://www.openssl.org/
Dolezel, R.: Security Infrastructure for Electronic Archive Using Open Source Software. In: Proceedings of the 16th Conference Student EEICT 2010, Brno, Czech Republic, pp. 224–228 (April 2010)
Welcome! - The Apache HTTP Server Project (2011), http://httpd.apache.org/
Mozilla Firefox Web Browser (2011), http://www.mozilla.com/en-US/firefox/fx/
OpenSC (2011), http://www.opensc-project.org/opensc
Dolezel, R., Zeman, V.: Usage of multi-factor authentication using cryptographic devices in open source software (in czech). Elektrorevue, 1–6 (December 2009)
iKey 3000 - SafeNet iKey 3000 - Rainbow iKey 3000 - CyProtect AG - Products (2011), http://www.cyprotect.com/e/main0152.php
Apache SSL/TLS Encryption - Apache HTTP Server (2011), http://http.apache.org/docs/trunk/ssl/
Wireshark Go deep (2011), http://www.wireshark.org/
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2011 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Dolezel, R., Pedersen, J.M. (2011). Certificate-Based Authentication Using Hardware Cryptographic Devices. In: ChoraÅ›, R.S. (eds) Image Processing and Communications Challenges 3. Advances in Intelligent and Soft Computing, vol 102. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-23154-4_57
Download citation
DOI: https://doi.org/10.1007/978-3-642-23154-4_57
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-642-23153-7
Online ISBN: 978-3-642-23154-4
eBook Packages: EngineeringEngineering (R0)