A Security Model for Web-Based Communication

计算机科学 Web应用程序安全性 计算机安全 万维网 Web服务 Web开发
作者
Pouyan Fotouhi Tehrani,Eric Osterweil,Thomas C. Schmidt,Matthias Wählisch
出处
期刊:Communications of The ACM [Association for Computing Machinery]
卷期号:67 (10): 83-90
标识
DOI:10.1145/3623292
摘要

Web access involves various protocols to resolve domain names to IP addresses, establish data exchange channels with Web servers, and to authenticate communication partners. Each protocol has its own set of requirements and security measures. In addition to technical features, operating the Web also introduces organizational and political aspects which are important to consider when deploying a secure basis for Web-based communication. In this paper, we propose an algorithmic security model based on the widely deployed technologies DNS(SEC) and Web PKI to cover the three dimensions identification , resolution , and transaction . Our model enables quantification and qualification of the security assurance provided by an online service provider. To verify the applicability of our model, we investigate the online presence of Alerting Authorities in the U.S., selected German Emergency Service providers, and UN member states . We observe partially enhanced security relative to global Internet trends, yet find cause for concern as only about 6% of unique hosts cater to secure resolution. About 46% of investigated organizations use shared certificates with 1% of all organizations having no or invalid certificates. Two thirds of organizations are not uniquely identifiable and as such lack the basic requirement of trustworthy communication.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
道天发布了新的文献求助10
1秒前
Lucia发布了新的文献求助10
1秒前
奋斗橘子应助JSEILWQ采纳,获得10
2秒前
风中的语堂完成签到,获得积分20
3秒前
4秒前
田様应助tjy采纳,获得10
6秒前
7秒前
Orange应助义气的行天采纳,获得10
7秒前
科研通AI2S应助壕哥大帅哥采纳,获得10
7秒前
9秒前
111发布了新的文献求助10
10秒前
10秒前
小二郎应助JY采纳,获得10
10秒前
11秒前
11秒前
13秒前
今后应助繁花采纳,获得10
14秒前
詹姆斯发布了新的文献求助10
16秒前
16秒前
qian完成签到 ,获得积分10
16秒前
张维完成签到,获得积分20
18秒前
18秒前
18秒前
SciGPT应助smm采纳,获得10
18秒前
19秒前
玛卡巴卡的小推车完成签到,获得积分10
19秒前
研友_VZG7GZ应助遥感小虫采纳,获得10
19秒前
立冬发布了新的文献求助10
20秒前
21秒前
liu发布了新的文献求助10
21秒前
21秒前
tjy发布了新的文献求助10
21秒前
丫丫完成签到,获得积分10
21秒前
1LDan完成签到,获得积分10
22秒前
23秒前
Owen应助道天采纳,获得30
23秒前
文文文发布了新的文献求助10
24秒前
丫丫发布了新的文献求助10
24秒前
26秒前
魔法师完成签到,获得积分0
26秒前
高分求助中
Applied Survey Data Analysis (第三版, 2025) 800
Narcissistic Personality Disorder 700
Assessing and Diagnosing Young Children with Neurodevelopmental Disorders (2nd Edition) 700
The Elgar Companion to Consumer Behaviour and the Sustainable Development Goals 540
The Martian climate revisited: atmosphere and environment of a desert planet 500
Transnational East Asian Studies 400
Towards a spatial history of contemporary art in China 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 物理 生物化学 纳米技术 计算机科学 化学工程 内科学 复合材料 物理化学 电极 遗传学 量子力学 基因 冶金 催化作用
热门帖子
关注 科研通微信公众号,转发送积分 3845210
求助须知:如何正确求助?哪些是违规求助? 3387334
关于积分的说明 10548971
捐赠科研通 3108085
什么是DOI,文献DOI怎么找? 1712365
邀请新用户注册赠送积分活动 824385
科研通“疑难数据库(出版商)”最低求助积分说明 774751