login

Attack-resistant trust metrics for public key certification

Published 26 January 1998
Raph Levien, Alex Aiken
Citations187

TL;DR

An analytical framework for understanding the effectiveness of trust metrics in resisting attacks is presented, including a characterization of the space of possible attacks, and the theoretical best case for a trust metric is established.

Abstract

This paper investigates the role of trust metrics in attack-resistant public key certification. We present an analytical framework for understanding the effectiveness of trust metrics in resisting attacks, including a characterization of the space of possible attacks. Within this framework, we establish the theoretical best case for a trust metric. Finally, we present a practical trust metric based on network flow that meets this theoretical bound. independent sources of certification, and rejects (by assigning low trust values) assertions with insufficient certification. The previous work raises many questions, including: To which kinds of attack is a trust metric resistant? Which trust metric is best? How well do these trust metrics work? 1

Keywords

Social SciencesComputer Science