2004•The Internet EncyclopediaRequires access

Public Key Infrastructure ( PKI )

Russ Housley

Open publisher page 35 citations

Abstract

Abstract To use public key cryptography effectively on the Internet, one must know the owner of the private key that corresponds to a published public key. Public key infrastructure (PKI) provides this information. The workings of public key cryptography are not addressed here (for more on that topic, see the chapter on encryption). Rather, this chapter describes the basic concepts and components of PKI, comparing and contrasting alternative PKI architectures. Public key certificates, certificate revocation, and the protocols used in PKI management are described. Policies and procedures employed by a certification authority (CA) are also discussed. Attribute certificates, when used in conjunction with public key certificates, provide authorization information in addition to identification and authentication. Finally, future PKI developments are discussed.

About this research paper

What this paper is about

Abstract To use public key cryptography effectively on the Internet, one must know the owner of the private key that corresponds to a published public key. Public key infrastructure (PKI) provides this information. The workings of public key cryptography are not addressed here (for more on that topic, see the chapter on encryption). Rather, this chapter describes the basic concepts and components of PKI, comparing and contrasting alternative PKI architectures. Public key certificates, certificate revocation, and the protocols used in PKI management are described. Policies and procedures employed by a certification authority (CA) are also discussed. Attribute certificates, when used in conjunction with public key certificates, provide authorization information in addition to identification and authentication. Finally, future PKI developments are discussed.

Why it matters

OpenAlex reports 35 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Abstract To use public key cryptography effectively on the Internet, one must know the owner of the private key that corresponds to a published public key. Public key infrastructure (PKI) provides this information. The workings of public key cryptography are not addressed here (for more on that topic, see the chapter on encryption). Rather, this chapter describes the basic concepts and components of PKI, comparing and contrasting alternative PKI architectures. Public key certificates, certificate revocation, and the protocols used in PKI management are described. Policies and procedures employed by a certification authority (CA) are also discussed. Attribute certificates, when used in conjunction with public key certificates, provide authorization information in addition to identification and authentication. Finally, future PKI developments are discussed.

Key concepts: Public key infrastructure, Public-key cryptography, Revocation list, Implicit certificate, Public key certificate, Computer security, Certificate authority, Key (lock)

Related papers

Back to paper searchBrowse research topicsOriginal source
Public Key Infrastructure ( PKI ) — Research Paper | ScholarLens