MetaCartSign in to MyCiteSeer

Include Citations | Advanced Search | Help

Include Citations | Advanced Search | Help

  The Eternal Resource Locator: An Alternative Means of Establishing Trust (1998) [4 citations — 1 self]

Download:
Download as a PDF | Download as a PS
by Ross J Anderson, Vaclav Matyas, Fabien Ap Petitcolas
In 1998 USENIX Electronic Commerce Workshop
http://www.cl.cam.ac.uk/~fapp2/papers/ec98-erl.ps.gz
Add To MetaCart

Abstract:

Abstract. Much research on Internet security has concentrated so far on generic mechanisms such as firewalls, IP authentication and protocols for large scale key distribution. However, once we start to look at specific applications, some quite di#erent requirements appear. We set out to build an infrastructure that would support the reliable electronic distribution of books on which doctors depend when making diagnostic and treatment decisions, such as care protocols, drug formularies and government notices. Similar requirements will be essential for other areas of human activities such as electronic commerce. We initially tried to implement a signature hierarchy based on X.509 but found that this had a number of shortcomings. We therefore developed an alternative way to manage trust in electronic publishing, that has a number of advantages which may commend it in other applications. It does not involve the use of export-controlled cryptography; it uses much less computational resources than digital signature mechanisms; and it provides a number of features that may be useful in environments where we are worried about liability. Yet another alternative involves use of one-time signatures. We have actually implemented one-time signatures for one version of the medical publishing system. This system initially used the familiar X.509 and RSA based signature mechanisms; the move to one-time signatures enabled considerable simplification, cost reduction and performance improvement. We believe that similar mechanisms may be appropriate for protecting other information that changes slowly and remains available over long time periods. Book and journal publishing or legal announcements in general appear to be strong candidates. 1

Citations

191 A certified digital signature – Merkle - 1989
156 Stornetta: “How to Time-Stamp a Digital Document – Haber, S - 1991
137 A digital signature based on a conventional encryption function – MERKLE - 1987
69 Constructing digital signatures from a oneway function – Lamport - 1979
65 A security policy model for clinical information systems – Anderson - 1996
26 A proposed architecture for trusted third party services. Cryptography Policy and Algorithms Conference – Jefferies, Mitchell - 1995
4 Secure books: protecting the distribution of knowledge – Anderson, Maty'as, et al. - 1997
1 Václav Matyáˇs Jr., Fabien AP Petitcolas, Iain E Buchan and Rudolf Hanka. “Secure Books: Protecting the Distribution of Knowledge – Anderson
1 Binding Bit Patterns to real World Entities – Christianson, Malcolm
1 citation suppressed for legal reasons; it can be found easily as `The JET Report' using Web search engines – Standard
1 Fabien AP Petitcolas, Iain E Buchan and Rudolf Hanka. "Secure Books: Protecting the Distribution of Knowledge – Anderson, Jr