Cryptography - Lecture 20 - Key Management and Certificates

This lesson discusses the issue of how keys are securely distributed, and the need for public key certificates and certificate authorities (CA's) to create and manage them.

Objectives

  • the need for key management
  • why certificates and certificate authorities (CA's) are needed
  • the general form and use of X.509 certificates
  • Preliminary Reading

    Stallings, "Cryptography and Network Security", Ch 11.2 pp341-349.

    Lecture Content

    Key Management

    1. Key Management
    2. Physical Delivery
    3. Authentication Key Server
    4. Public Notary or Certification Authority

    Public Key Certificates

    1. Public Key Certificates
    2. X.509 - Directory Authentication Service
    3. X.509 Certificate
    4. Certificate Extensions
    5. Certificate Properties
    6. CA Hierarchy
    7. CA Hierarchy Use
    8. CA's Now
    9. Authentication Procedures
    10. One-Way Authentication
    11. Two-Way Authentication
    12. Three-Way Authentication

    Summary

    1. Summary

    Additional References

    For additional information, see:
  • B Schneier, "Applied Cryptography", 2/e, Ch 24.9

  • [Back to CCS3 Lectures]
    Lawrie.Brown@adfa.edu.au / 8 Feb 2001