Analyzing proposals for improving authentication on the TLS-/SSL-protected Web View Full Text


Ontology type: schema:ScholarlyArticle     


Article Info

DATE

2016-11

AUTHORS

Christopher W. Brown, Michael Jenkins

ABSTRACT

“Secure” Web browsing with HTTPS uses TLS/SSL and X.509 certificates to provide authenticated, confidential communication between Web clients and Web servers. The authentication component of the system has a variety of weaknesses, which have led to a variety of proposals for improving the current environment. In this paper, we survey, analyze, compare and contrast five prominent proposals. To do this, we attempt to systematically capture the properties one might require of such a system: authentication properties, forensics/privacy properties, usability properties and pragmatic properties. Enumerating these properties is an important part of understanding these proposals and the nature of the authentication problem for the secure Web. Finally, we offer a few conclusions and suggestions pertaining to these proposals and possible future directions of research. More... »

PAGES

621-635

Identifiers

URI

http://scigraph.springernature.com/pub.10.1007/s10207-016-0316-2

DOI

http://dx.doi.org/10.1007/s10207-016-0316-2

DIMENSIONS

https://app.dimensions.ai/details/publication/pub.1006075101


Indexing Status Check whether this publication has been indexed by Scopus and Web Of Science using the SN Indexing Status Tool
Incoming Citations Browse incoming citations for this publication using opencitations.net

JSON-LD is the canonical representation for SciGraph data.

TIP: You can open this SciGraph record using an external JSON-LD service: JSON-LD Playground Google SDTT

[
  {
    "@context": "https://springernature.github.io/scigraph/jsonld/sgcontext.json", 
    "about": [
      {
        "id": "http://purl.org/au-research/vocabulary/anzsrc-for/2008/0804", 
        "inDefinedTermSet": "http://purl.org/au-research/vocabulary/anzsrc-for/2008/", 
        "name": "Data Format", 
        "type": "DefinedTerm"
      }, 
      {
        "id": "http://purl.org/au-research/vocabulary/anzsrc-for/2008/08", 
        "inDefinedTermSet": "http://purl.org/au-research/vocabulary/anzsrc-for/2008/", 
        "name": "Information and Computing Sciences", 
        "type": "DefinedTerm"
      }
    ], 
    "author": [
      {
        "affiliation": {
          "alternateName": "National Security Agency", 
          "id": "https://www.grid.ac/institutes/grid.482831.4", 
          "name": [
            "National Security Agency / U. S. Naval Academy, Annapolis, MD, USA"
          ], 
          "type": "Organization"
        }, 
        "familyName": "Brown", 
        "givenName": "Christopher W.", 
        "id": "sg:person.07752030115.65", 
        "sameAs": [
          "https://app.dimensions.ai/discover/publication?and_facet_researcher=ur.07752030115.65"
        ], 
        "type": "Person"
      }, 
      {
        "affiliation": {
          "alternateName": "National Security Agency", 
          "id": "https://www.grid.ac/institutes/grid.482831.4", 
          "name": [
            "National Security Agency, Fort Meade, MD, USA"
          ], 
          "type": "Organization"
        }, 
        "familyName": "Jenkins", 
        "givenName": "Michael", 
        "id": "sg:person.011344771115.77", 
        "sameAs": [
          "https://app.dimensions.ai/discover/publication?and_facet_researcher=ur.011344771115.77"
        ], 
        "type": "Person"
      }
    ], 
    "citation": [
      {
        "id": "https://doi.org/10.1145/1719030.1719050", 
        "sameAs": [
          "https://app.dimensions.ai/details/publication/pub.1015095552"
        ], 
        "type": "CreativeWork"
      }
    ], 
    "datePublished": "2016-11", 
    "datePublishedReg": "2016-11-01", 
    "description": "\u201cSecure\u201d Web browsing with HTTPS uses TLS/SSL and X.509 certificates to provide authenticated, confidential communication between Web clients and Web servers. The authentication component of the system has a variety of weaknesses, which have led to a variety of proposals for improving the current environment. In this paper, we survey, analyze, compare and contrast five prominent proposals. To do this, we attempt to systematically capture the properties one might require of such a system: authentication properties, forensics/privacy properties, usability properties and pragmatic properties. Enumerating these properties is an important part of understanding these proposals and the nature of the authentication problem for the secure Web. Finally, we offer a few conclusions and suggestions pertaining to these proposals and possible future directions of research.", 
    "genre": "research_article", 
    "id": "sg:pub.10.1007/s10207-016-0316-2", 
    "inLanguage": [
      "en"
    ], 
    "isAccessibleForFree": false, 
    "isPartOf": [
      {
        "id": "sg:journal.1136826", 
        "issn": [
          "1615-5262", 
          "1615-5270"
        ], 
        "name": "International Journal of Information Security", 
        "type": "Periodical"
      }, 
      {
        "issueNumber": "6", 
        "type": "PublicationIssue"
      }, 
      {
        "type": "PublicationVolume", 
        "volumeNumber": "15"
      }
    ], 
    "name": "Analyzing proposals for improving authentication on the TLS-/SSL-protected Web", 
    "pagination": "621-635", 
    "productId": [
      {
        "name": "readcube_id", 
        "type": "PropertyValue", 
        "value": [
          "1cf05d482ff44ac8d684a8e2e1a79617fd37c2a290ddb57ab8726b0a3c61590f"
        ]
      }, 
      {
        "name": "doi", 
        "type": "PropertyValue", 
        "value": [
          "10.1007/s10207-016-0316-2"
        ]
      }, 
      {
        "name": "dimensions_id", 
        "type": "PropertyValue", 
        "value": [
          "pub.1006075101"
        ]
      }
    ], 
    "sameAs": [
      "https://doi.org/10.1007/s10207-016-0316-2", 
      "https://app.dimensions.ai/details/publication/pub.1006075101"
    ], 
    "sdDataset": "articles", 
    "sdDatePublished": "2019-04-11T01:06", 
    "sdLicense": "https://scigraph.springernature.com/explorer/license/", 
    "sdPublisher": {
      "name": "Springer Nature - SN SciGraph project", 
      "type": "Organization"
    }, 
    "sdSource": "s3://com-uberresearch-data-dimensions-target-20181106-alternative/cleanup/v134/2549eaecd7973599484d7c17b260dba0a4ecb94b/merge/v9/a6c9fde33151104705d4d7ff012ea9563521a3ce/jats-lookup/v90/0000000001_0000000264/records_8697_00000510.jsonl", 
    "type": "ScholarlyArticle", 
    "url": "http://link.springer.com/10.1007%2Fs10207-016-0316-2"
  }
]
 

Download the RDF metadata as:  json-ld nt turtle xml License info

HOW TO GET THIS DATA PROGRAMMATICALLY:

JSON-LD is a popular format for linked data which is fully compatible with JSON.

curl -H 'Accept: application/ld+json' 'https://scigraph.springernature.com/pub.10.1007/s10207-016-0316-2'

N-Triples is a line-based linked data format ideal for batch operations.

curl -H 'Accept: application/n-triples' 'https://scigraph.springernature.com/pub.10.1007/s10207-016-0316-2'

Turtle is a human-readable linked data format.

curl -H 'Accept: text/turtle' 'https://scigraph.springernature.com/pub.10.1007/s10207-016-0316-2'

RDF/XML is a standard XML format for linked data.

curl -H 'Accept: application/rdf+xml' 'https://scigraph.springernature.com/pub.10.1007/s10207-016-0316-2'


 

This table displays all metadata directly associated to this object as RDF triples.

72 TRIPLES      21 PREDICATES      28 URIs      19 LITERALS      7 BLANK NODES

Subject Predicate Object
1 sg:pub.10.1007/s10207-016-0316-2 schema:about anzsrc-for:08
2 anzsrc-for:0804
3 schema:author N352d36e1843d4514a68f491845ace795
4 schema:citation https://doi.org/10.1145/1719030.1719050
5 schema:datePublished 2016-11
6 schema:datePublishedReg 2016-11-01
7 schema:description “Secure” Web browsing with HTTPS uses TLS/SSL and X.509 certificates to provide authenticated, confidential communication between Web clients and Web servers. The authentication component of the system has a variety of weaknesses, which have led to a variety of proposals for improving the current environment. In this paper, we survey, analyze, compare and contrast five prominent proposals. To do this, we attempt to systematically capture the properties one might require of such a system: authentication properties, forensics/privacy properties, usability properties and pragmatic properties. Enumerating these properties is an important part of understanding these proposals and the nature of the authentication problem for the secure Web. Finally, we offer a few conclusions and suggestions pertaining to these proposals and possible future directions of research.
8 schema:genre research_article
9 schema:inLanguage en
10 schema:isAccessibleForFree false
11 schema:isPartOf Na9887be1d50b499b852d68768a85e588
12 Ne0bd11553c624ec1a051b013f9e33b92
13 sg:journal.1136826
14 schema:name Analyzing proposals for improving authentication on the TLS-/SSL-protected Web
15 schema:pagination 621-635
16 schema:productId N15bd90a25c8e4ef9bc42647ac4bd1b12
17 N6d0505dd4bfa46e3b1810d6ce2aa43ac
18 Nc92f98efc43c483db2ac2802b7a5590b
19 schema:sameAs https://app.dimensions.ai/details/publication/pub.1006075101
20 https://doi.org/10.1007/s10207-016-0316-2
21 schema:sdDatePublished 2019-04-11T01:06
22 schema:sdLicense https://scigraph.springernature.com/explorer/license/
23 schema:sdPublisher N50c315aa82794d838e2dd5d28f6aa12c
24 schema:url http://link.springer.com/10.1007%2Fs10207-016-0316-2
25 sgo:license sg:explorer/license/
26 sgo:sdDataset articles
27 rdf:type schema:ScholarlyArticle
28 N15bd90a25c8e4ef9bc42647ac4bd1b12 schema:name readcube_id
29 schema:value 1cf05d482ff44ac8d684a8e2e1a79617fd37c2a290ddb57ab8726b0a3c61590f
30 rdf:type schema:PropertyValue
31 N352d36e1843d4514a68f491845ace795 rdf:first sg:person.07752030115.65
32 rdf:rest N4302cc823f244da28791da6beed5651d
33 N4302cc823f244da28791da6beed5651d rdf:first sg:person.011344771115.77
34 rdf:rest rdf:nil
35 N50c315aa82794d838e2dd5d28f6aa12c schema:name Springer Nature - SN SciGraph project
36 rdf:type schema:Organization
37 N6d0505dd4bfa46e3b1810d6ce2aa43ac schema:name dimensions_id
38 schema:value pub.1006075101
39 rdf:type schema:PropertyValue
40 Na9887be1d50b499b852d68768a85e588 schema:volumeNumber 15
41 rdf:type schema:PublicationVolume
42 Nc92f98efc43c483db2ac2802b7a5590b schema:name doi
43 schema:value 10.1007/s10207-016-0316-2
44 rdf:type schema:PropertyValue
45 Ne0bd11553c624ec1a051b013f9e33b92 schema:issueNumber 6
46 rdf:type schema:PublicationIssue
47 anzsrc-for:08 schema:inDefinedTermSet anzsrc-for:
48 schema:name Information and Computing Sciences
49 rdf:type schema:DefinedTerm
50 anzsrc-for:0804 schema:inDefinedTermSet anzsrc-for:
51 schema:name Data Format
52 rdf:type schema:DefinedTerm
53 sg:journal.1136826 schema:issn 1615-5262
54 1615-5270
55 schema:name International Journal of Information Security
56 rdf:type schema:Periodical
57 sg:person.011344771115.77 schema:affiliation https://www.grid.ac/institutes/grid.482831.4
58 schema:familyName Jenkins
59 schema:givenName Michael
60 schema:sameAs https://app.dimensions.ai/discover/publication?and_facet_researcher=ur.011344771115.77
61 rdf:type schema:Person
62 sg:person.07752030115.65 schema:affiliation https://www.grid.ac/institutes/grid.482831.4
63 schema:familyName Brown
64 schema:givenName Christopher W.
65 schema:sameAs https://app.dimensions.ai/discover/publication?and_facet_researcher=ur.07752030115.65
66 rdf:type schema:Person
67 https://doi.org/10.1145/1719030.1719050 schema:sameAs https://app.dimensions.ai/details/publication/pub.1015095552
68 rdf:type schema:CreativeWork
69 https://www.grid.ac/institutes/grid.482831.4 schema:alternateName National Security Agency
70 schema:name National Security Agency / U. S. Naval Academy, Annapolis, MD, USA
71 National Security Agency, Fort Meade, MD, USA
72 rdf:type schema:Organization
 




Preview window. Press ESC to close (or click here)


...