Trustchain - Trustworthy Decentralised Public Key Infrastructure for Digital Credentials

05/15/2023
by   Tim Hobson, et al.
0

The sharing of public key information is central to the digital credential security model, but the existing Web PKI with its opaque Certification Authorities and synthetic attestations serves a very different purpose. We propose a new approach to decentralised public key infrastructure, designed for digital identity, in which connections between legal entities that are represented digitally correspond to genuine, pre-existing relationships between recognisable institutions. In this scenario, users can judge for themselves the level of trust they are willing to place in a given chain of attestations. Our proposal includes a novel mechanism for establishing a root of trust in a decentralised setting via independently-verifiable timestamping. We also present a reference implementation built on open networks, protocols and standards. The system has minimal setup costs and is freely available for any community to adopt as a digital public good.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/23/2019

A Decentralised Digital Identity Architecture

Current architectures to validate, certify, and manage identity are base...
research
12/03/2022

An Overview of Trust Standards for Communication Networks and Future Digital World

With the development of Information and Communication Technologies, trus...
research
08/10/2021

Decentralised Trust for the Digital Economy

We propose a research initiative to explore and evaluate end-user techno...
research
06/25/2019

Proxy Certificates: The Missing Link in the Web's Chain of Trust

The ability to quickly revoke a compromised key is critical to the secur...
research
10/18/2019

Support for public-key infrastructures in DNS

Traditionally, publicly available repositories of certificates offer the...
research
03/22/2018

The Roots of Bias on Uber

In the last decade, there has been a growth in, what we call, digitally ...
research
07/17/2023

Reducing Trust in Automated Certificate Authorities via Proofs-of-Authentication

Automated certificate authorities (CAs) have expanded the reach of publi...

Please sign up or login with your details

Forgot password? Click here to reset