A Call to Reconsider Certification Authority Authorization
Publikation: Beitrag in Fachzeitschrift › Forschungsartikel › Beigetragen › Begutachtung
Beitragende
Abstract
Certification Authority Authentication (CAA) is a safeguard against illegitimate certificate issuance. We show how shortcomings in CAA concepts and operational aspects undermine its effectiveness in preventing certificate misissuance. Our discussion reveals pitfalls and highlights best practices when designing security protocols based on the Domain Name System.
Details
Originalsprache | Englisch |
---|---|
Seitenumfang | 9 |
Fachzeitschrift | IEEE Security & Privacy |
Publikationsstatus | Elektronische Veröffentlichung vor Drucklegung - 12 Feb. 2025 |
Peer-Review-Status | Ja |
Externe IDs
unpaywall | 10.1109/msec.2025.3531232 |
---|---|
Mendeley | 61fc8ff8-e648-382d-a9cc-29b3c456aed6 |
ORCID | /0000-0002-3825-2807/work/179394058 |