메뉴 건너뛰기




Volumn , Issue , 2011, Pages 427-443

The SSL landscape: A thorough analysis of the X.509 PKI using active and passive measurements

Author keywords

certificates; HTTPS; public key infrastructure; SSL; TLS; X.509

Indexed keywords

CERTIFICATES; HTTPS; PUBLIC KEY INFRASTRUCTURE; SSL; TLS; X.509;

EID: 82955197322     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1145/2068816.2068856     Document Type: Conference Paper
Times cited : (155)

References (32)
  • 1
    • 70849094703 scopus 로고    scopus 로고
    • Internet X.509 public key infrastructure certificate and certificate revocation list (CRL) profile
    • (Proposed Standard), May
    • D. Cooper, S. Santesson, S. Farrell, S. Boeyen, R. Housley, and W. Polk, "Internet X.509 public key infrastructure certificate and certificate revocation list (CRL) profile," RFC 5280 (Proposed Standard), May 2008.
    • (2008) RFC , vol.5280
    • Cooper, D.1    Santesson, S.2    Farrell, S.3    Boeyen, S.4    Housley, R.5    Polk, W.6
  • 2
    • 70450184286 scopus 로고    scopus 로고
    • The transport layer security (TLS) protocol version 1.2
    • (Proposed Standard), Aug. updated by RFCs 5746, 5878, 6176
    • T. Dierks and E. Rescorla, "The transport layer security (TLS) protocol version 1.2," RFC 5246 (Proposed Standard), Aug. 2008, updated by RFCs 5746, 5878, 6176.
    • (2008) RFC , vol.5246
    • Dierks, T.1    Rescorla, E.2
  • 4
    • 82955228607 scopus 로고    scopus 로고
    • DigiNotar removal follow up
    • online; last retrieved in September 2011
    • Mozilla Security Blog, "DigiNotar removal follow up,"https://blog.mozilla.com/security/2011/09/02/diginotar-removal-follow- up/ [online; last retrieved in September 2011], 2011.
    • (2011) Mozilla Security Blog
  • 5
    • 77950877250 scopus 로고    scopus 로고
    • So long, and no thanks for the externalities: The rational rejection of security advice by users
    • New York, NY, USA: ACM
    • C. Herley, "So long, and no thanks for the externalities: the rational rejection of security advice by users," in Proc. 2009 Workshop on New Security Paradigms. New York, NY, USA: ACM, 2009.
    • (2009) Proc. 2009 Workshop on New Security Paradigms
    • Herley, C.1
  • 6
    • 0034581037 scopus 로고    scopus 로고
    • Ten risks of PKI: What you're not being told about public key infrastructure
    • C. Ellison and B. Schneier, "Ten risks of PKI: What you're not being told about public key infrastructure," Computer Security Journal, vol. 16, no. 1, 2000.
    • (2000) Computer Security Journal , vol.16 , Issue.1
    • Ellison, C.1    Schneier, B.2
  • 7
    • 0036684150 scopus 로고    scopus 로고
    • PKI: It's not dead, just resting
    • August
    • P. Gutmann, "PKI: It's not dead, just resting," IEEE Computer, vol. 35, no. 8, August 2002.
    • (2002) IEEE Computer , vol.35 , Issue.8
    • Gutmann, P.1
  • 8
    • 82955238507 scopus 로고    scopus 로고
    • An observatory for the SSLiverse
    • [last retrieved in May 2011]. [Online]. Available
    • P. Eckersley and J. Burns, "An observatory for the SSLiverse," Talk at Defcon 18., July 2010, [last retrieved in May 2011]. [Online]. Available: https://www.eff.org/files/DefconSSLiverse.pdf
    • Talk at Defcon 18., July 2010
    • Eckersley, P.1    Burns, J.2
  • 9
    • 82955238508 scopus 로고    scopus 로고
    • Is the SSLiverse a safe place?
    • Slides from [online; last retrieved in May 2011]
    • P. Eckersley and J. Burns, "Is the SSLiverse a safe place?"Talk at 27C3. Slides from https://www.eff.org/files/ccc2010.pdf [online; last retrieved in May 2011], 2010.
    • (2010) Talk at 27C3
    • Eckersley, P.1    Burns, J.2
  • 10
    • 82955166345 scopus 로고    scopus 로고
    • Internet SSL Survey 2010
    • Slides from [online; last retrieved in May 2011]
    • I. Ristic, "Internet SSL Survey 2010," Talk at BlackHat 2010. Slides from https://media.blackhat.com/bh-us-10/presentations/Ristic/BlackHat- USA-2010-Ristic-Qualys-SSL-Survey-HTTP-Rating-Guide-slides.pdf, 2010, [online; last retrieved in May 2011].
    • (2010) Talk at BlackHat 2010
    • Ristic, I.1
  • 11
    • 82955228606 scopus 로고    scopus 로고
    • State of SSL
    • Slides from [online; last retrieved in May 2011]
    • I. Ristic, "State of SSL," Talk at InfoSec World 2011. Slides from http://blog.ivanristic.com/Qualys-SSL-Labs-State-of-SSL-InfoSec-World- April-2011.pdf, 2011, [online; last retrieved in May 2011].
    • (2011) Talk at InfoSec World 2011
    • Ristic, I.1
  • 12
    • 82955222734 scopus 로고    scopus 로고
    • Alexa Internet Inc., [online; last retrieved in May 2011]
    • Alexa Internet Inc., "Top 1,000,000 sites (updated daily),"http://s3.amazonaws.com/alexa-static/top-1m.csv.zip, 2009-2011, [online; last retrieved in May 2011].
    • (2009) Top 1,000,000 Sites (Updated Daily)
  • 21
    • 0033295259 scopus 로고    scopus 로고
    • Bro: A system for detecting network intruders in real-time
    • V. Paxson, "Bro: a system for detecting network intruders in real-time," Computer networks, vol. 31, no. 23-24, 1999.
    • (1999) Computer Networks , vol.31 , Issue.23-24
    • Paxson, V.1
  • 23
    • 82955228603 scopus 로고    scopus 로고
    • online; last retrieved in May 2011
    • Planet Lab, "Planet LabWeb site,"https://www.planet-lab.org [online; last retrieved in May 2011].
    • Planet LabWeb Site
  • 24
    • 82955238505 scopus 로고    scopus 로고
    • online; last retrieved in May 2011
    • The International Grid Trust Federation, "IGTF Web site,"http://www.igtf.net/ [online; last retrieved in May 2011].
    • IGTF Web Site
  • 26
    • 0003821858 scopus 로고    scopus 로고
    • HTTP over TLS
    • Informational
    • E. Rescorla, "HTTP over TLS," RFC 2818 (Informational), 2000.
    • (2000) RFC , vol.2818
    • Rescorla, E.1
  • 27
    • 82955238499 scopus 로고    scopus 로고
    • online; last retrieved in May 2011
    • CA/Browser Forum, "EV SSL certificate guidelines version 1.3," http://www.cabforum.org/Guidelines-v1-3.pdf, 2010, [online; last retrieved in May 2011].
    • (2010) EV SSL Certificate Guidelines Version 1.3
  • 28
    • 38049156019 scopus 로고    scopus 로고
    • Chosen-prefix collisions for MD5 and colliding X.509 certificates for different identities
    • Advances in Cryptology - EUROCRYPT 2007, Springer Berlin / Heidelberg
    • M. Stevens, A. Lenstra, and B. de Weger, "Chosen-prefix collisions for MD5 and colliding X.509 certificates for different identities," in Advances in Cryptology - EUROCRYPT 2007, ser. LNCS. Springer Berlin / Heidelberg, 2007, vol. 4515.
    • (2007) LNCS , vol.4515
    • Stevens, M.1    Lenstra, A.2    De Weger, B.3
  • 29
    • 82955228601 scopus 로고    scopus 로고
    • online; last retrieved in May 2011
    • NIST, "Approved Algorithms,"http://csrc.nist.gov/groups/ST/ toolkit/secure-hashing.html, 2006, [online; last retrieved in May 2011].
    • (2006) Approved Algorithms
  • 32
    • 82955228597 scopus 로고    scopus 로고
    • online; last retrieved in May 2011
    • NIST, "Special publications (800 Series),"http://csrc.nist.gov/ publications/PubsSPs.html, 2011, [online; last retrieved in May 2011].
    • (2011) Special Publications (800 Series)


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.