Trust and Its Ramifications for the DOD Public Key Infrastructure (PKI)
Leonard T. Gaines
Abstract
Open-access reader
Leonard T. Gaines
Abstract
Open-access reader
In order to incorporate trust into e-commerce, public key cryptography, and basic communication, one must understand and effectively manage trust. Various Internet security protocols have attempted to address this lack of trust. However, these protocols do not incorporate the user's trust into these protocols. Computational models of trust have been developed in an attempt to automate the logic, variables, and thought processes that a human performs when making a trust-decision. Due to the fact that trust is based on a subjective belief, the models require the assignment of metrics to belief variables or attributes that will have value when evaluating trust. These models address the notion of trust in many different ways and both their definitions and metrics vary significantly. This thesis evaluates the various trust models. It is necessary to understand how trust is defined in each model in order to evaluate how well the operation of a system based on the model satisfies the requirements of the users. Trust models are evaluated based on their characteristics, environmental references, metrics, variables used, and outputs. This thesis concludes with the assessment of a practical application of a trust model to the DoD's PKI system.
OpenAlex reports 1 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
In order to incorporate trust into e-commerce, public key cryptography, and basic communication, one must understand and effectively manage trust. Various Internet security protocols have attempted to address this lack of trust. However, these protocols do not incorporate the user's trust into these protocols. Computational models of trust have been developed in an attempt to automate the logic, variables, and thought processes that a human performs when making a trust-decision. Due to the fact that trust is based on a subjective belief, the models require the assignment of metrics to belief variables or attributes that will have value when evaluating trust. These models address the notion of trust in many different ways and both their definitions and metrics vary significantly. This thesis evaluates the various trust models. It is necessary to understand how trust is defined in each model in order to evaluate how well the operation of a system based on the model satisfies the requirements of the users. Trust models are evaluated based on their characteristics, environmental references, metrics, variables used, and outputs. This thesis concludes with the assessment of a practical application of a trust model to the DoD's PKI system.
Key concepts: Public key infrastructure, Computational trust, Trust anchor, Web of trust, Computer science, Computer security, Trust management (information system), Key (lock)