题名

Practical Implementation of a Secure Email System Using Certificateless Cryptography and Domain Name System

DOI

10.6633/IJNS.201601.18(1).10

作者

Suresh Kumar Balakrishnan;V. P. Jagathy Raj

关键词

Certificateless cryptography ; domain name system ; identity based cryptography ; multi-factor authentication ; public key infrastructure ; secure email system

期刊名称

International Journal of Network Security

卷期/出版年月

18卷1期(2016 / 01 / 01)

页次

99 - 107

内容语文

英文

英文摘要

Email is currently the most widely used communication system in daily life. To improve security and efficiency, most email systems adopt Public Key Infrastructure (PKI) as the mechanism to implement security, but PKI based systems suffer from expensive certificate management and problems in scalability. Identity Based Cryptography (IBC) is another method, but it has the inherent drawback of Key Escrow. This paper proposes an implementation of a practical, secure email system based on certificateless cryptography, which uses Domain Name System (DNS) as the infrastructure for public key exchange and a secure key token/fingerprint authentication system for user authentication. The message payload is encrypted by a per-email symmetric key generated from a secret value, the public and private keys of both the sender and the receiver. The proposed mailing system is secure against standard security model.

主题分类 基礎與應用科學 > 資訊科學