A Decentralized Public Key Infrastructure for Trust Management in X-Road
dc.contributor.advisor | Bakhtina, Mariia, juhendaja | |
dc.contributor.advisor | Awad, Ahmed, juhendaja | |
dc.contributor.advisor | Matulevičius, Raimundas, juhendaja | |
dc.contributor.author | Leung, Kin Long | |
dc.contributor.other | Tartu Ülikool. Loodus- ja täppisteaduste valdkond | et |
dc.contributor.other | Tartu Ülikool. Arvutiteaduse instituut | et |
dc.date.accessioned | 2023-10-24T08:30:32Z | |
dc.date.available | 2023-10-24T08:30:32Z | |
dc.date.issued | 2023 | |
dc.description.abstract | Today, Public Key Infrastructure with X.509 (PKIX) is the building block for establishing secure connections over the Internet and creating digital signatures. In PKIX, Certificate Authority (CA) is responsible for the creation of certificates and the resolution of certificate statuses. Due to the centralized architecture, CA becomes a single-point-offailure to any network that relies on it to establish trust. By utilizing distributed ledger technology (DLT), decentralized identifiers and verifiable credentials can be verified without intermediates like CAs. They can be used to construct a Decentralized Public Key Infrastructure (DPKI) which eliminates the shortcomings of PKIX. In this thesis, we studied X-Road, a centrally managed distributed data exchange system depending on PKIX, and presented an alternate DPKI architecture that uses DLT-based decentralized identifiers and verifiable credentials to build up trust between information systems. A proof-of-concept was implemented and evaluated. The findings demonstrate that the alternative DPKI architecture enhances the trustworthiness of the data exchange system, particularly in terms of security and reliability. | et |
dc.identifier.uri | https://hdl.handle.net/10062/93698 | |
dc.language.iso | eng | et |
dc.publisher | Tartu Ülikool | et |
dc.rights | openAccess | et |
dc.rights | Attribution-NonCommercial-NoDerivatives 4.0 International | * |
dc.rights.uri | http://creativecommons.org/licenses/by-nc-nd/4.0/ | * |
dc.subject | Decentralized Public Key Infrastructure | et |
dc.subject | Decentralized Identifier | et |
dc.subject | Verifiable Credentials | et |
dc.subject | X.509 | et |
dc.subject | Distributed Ledger | et |
dc.subject | X-Road | et |
dc.subject.other | magistritööd | et |
dc.subject.other | informaatika | et |
dc.subject.other | infotehnoloogia | et |
dc.subject.other | informatics | et |
dc.subject.other | infotechnology | et |
dc.title | A Decentralized Public Key Infrastructure for Trust Management in X-Road | et |
dc.type | Thesis | et |