Presentation 2003/11/6
Certificate-based State Authentication Scheme
Shinichiro MATSUO, Atsunori HIGASHIKAWA,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) All networked devices must be in secure state on the Internet. Even if a limited number of devices are not secure, the whole network can be damaged. Some Internet attacks such as the "Slammer" and "MSBlaster" worms are good examples. Current countermeasures against these are users being current with security news and applying all patches to their computers. However, these do not solve these problems. In this paper, we propose a scheme which proves security state of a device such as patch level of operating system, revision number of virus definition and so on, at any time. We then discuss construction of this scheme, which uses an unforgetable certificate. We then present two protocols that authenticate whether the states of devices are included in a qualifying group. It is difficult to forge the qualifying group under these protocols. Finally, we present two applications of our scheme which can ensure secure computing environment. Our scheme guarantees security against forgeries of state certificates and against malicious operations by security administrators.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) State authentication / time stamp / virus and worm protection and trusted computing
Paper # ISEC2003-66,OIS2003-43
Date of Issue

Conference Information
Committee ISEC
Conference Date 2003/11/6(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information Security (ISEC)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Certificate-based State Authentication Scheme
Sub Title (in English)
Keyword(1) State authentication
Keyword(2) time stamp
Keyword(3) virus and worm protection and trusted computing
1st Author's Name Shinichiro MATSUO
1st Author's Affiliation NTT DATA Corporation, R&D Headquaters()
2nd Author's Name Atsunori HIGASHIKAWA
2nd Author's Affiliation NTT DATA Corporation, R&D Headquaters
Date 2003/11/6
Paper # ISEC2003-66,OIS2003-43
Volume (vol) vol.103
Number (no) 416
Page pp.pp.-
#Pages 8
Date of Issue