题名 |
Practical Implementation of a Secure Email System Using Certificateless Cryptography and Domain Name System |
DOI |
10.6633/IJNS.201601.18(1).10 |
作者 |
Suresh Kumar Balakrishnan;V. P. Jagathy Raj |
关键词 |
Certificateless cryptography ; domain name system ; identity based cryptography ; multi-factor authentication ; public key infrastructure ; secure email system |
期刊名称 |
International Journal of Network Security |
卷期/出版年月 |
18卷1期(2016 / 01 / 01) |
页次 |
99 - 107 |
内容语文 |
英文 |
英文摘要 |
Email is currently the most widely used communication system in daily life. To improve security and efficiency, most email systems adopt Public Key Infrastructure (PKI) as the mechanism to implement security, but PKI based systems suffer from expensive certificate management and problems in scalability. Identity Based Cryptography (IBC) is another method, but it has the inherent drawback of Key Escrow. This paper proposes an implementation of a practical, secure email system based on certificateless cryptography, which uses Domain Name System (DNS) as the infrastructure for public key exchange and a secure key token/fingerprint authentication system for user authentication. The message payload is encrypted by a per-email symmetric key generated from a secret value, the public and private keys of both the sender and the receiver. The proposed mailing system is secure against standard security model. |
主题分类 |
基礎與應用科學 >
資訊科學 |