Formalizing and Safeguarding Blockchain-Based BlockVoke Protocol as an ACME Extension for Fast Certificate Revocation

Autor: Anant Sujatanagarjuna, Arne Bochem, Benjamin Leiding
Jazyk: angličtina
Rok vydání: 2022
Předmět:
Zdroj: Cryptography, Vol 6, Iss 4, p 63 (2022)
Druh dokumentu: article
ISSN: 2410-387X
DOI: 10.3390/cryptography6040063
Popis: Certificates are integral to the security of today’s Internet. Protocols like BlockVoke allow secure, timely and efficient revocation of certificates that need to be invalidated. ACME, a scheme used by the non-profit Let’s Encrypt Certificate Authority to handle most parts of the certificate lifecycle, allows automatic and seamless certificate issuance. In this work, we bring together both protocols by describing and formalizing an extension of the ACME protocol to support BlockVoke, combining the benefits of ACME’s certificate lifecycle management and BlockVoke’s timely and secure revocations. We then formally verify this extension through formal methods such as Colored Petri Nets (CPNs) and conduct a risk and threat analysis of the ACME/BlockVoke extension using the ISSRM domain model. Identified risks and threats are mitigated to secure our novel extension. Furthermore, a proof-of-concept implementation of the ACME/BlockVoke extension is provided, bridging the gap towards deployment in the real world.
Databáze: Directory of Open Access Journals
Nepřihlášeným uživatelům se plný text nezobrazuje