Researchers establishing security standards for the internet

July 7, 2009
Researchers establishing security standards for the internet

Enlarge

Sean Smith, Max Pala, and Scott Rea are helping make computing security easier to implement. (Photo by Joseph Mehling '69)

(PhysOrg.com) -- Dartmouth researchers who were pioneers in Public Key Infrastructure (PKI) - a system that secures and authenticates computer communications - are now playing leading roles establishing Internet standards and guidelines for security.

Secure Internet activity requires being able to prove who you are. experts agree that the traditional approach of passwords is not always effective. PKI and public key cryptography solve these problems, and Dartmouth researchers are leading the way in helping organizations deploy PKI. A new system developed at Dartmouth called PRQP, which stands for PKI Resource Query Protocol, is now in the pipeline with the Internet Engineering Task Force (IETF) to become the universal way to easily implement PKI-enhanced computing security.

"PKI labors under the misconception that it's difficult," says Scott Rea, senior PKI architect at Dartmouth. "PKI is most successful when it runs under the covers or in the background." And that's what it does on a lot of commercial websites that accept credit card numbers, ensuring security behind-the-scenes using PKI or "certificate authority" technology.

Dartmouth's Institute for Security, Technology, and Society (ISTS) has received funding from the Department of Homeland Security to explore ways to make PKI more user-friendly, for individuals and for businesses of all sizes. That's how PRQP was born.

"PRQP, very simply, provides a more distributed system for PKI; it works in a way to get trustworthy references in order to verify the PKI certificates of individuals or servers," says Massimiliano "Max" Pala, research fellow with ISTS and the Open Certificate Authority Lab director.

In other words, as PKI becomes ubiquitous, IT professionals need PQRP, which provides a standard way to operate PKI efficiently, and therefore ensures a consistent and robust measure of security.

And, according to Pala and Rea, adoption of PKI is growing, and there is a deliberate program to bring more and more organizations into the PKI fold. Consortiums have been established, grouped around common themes, so that all members within each group can trust each other's PKI certificates. For example, there are eight organizations now in the Higher Education group, or "bridge," which includes colleges and universities. It's called HEBCA, which stands for Higher Education Bridge Certificate Authority, and Rea serves as director of the HEBCA Operating Authority and secretary of the HEBCA Policy Management Authority.

There are also bridges for federal employees and contractors, pharmaceutical companies and researchers, and one for defense and aerospace companies and contractors. All four existing bridge organizations have formed a "federation" to trust everyone within these networks, and there are varying levels of security, because PKI is customizable. Among all four bridges, approximately 15 million certificates have been issued (mainly to individuals, but servers and other network devices can also carry certificates). That figure is expected to double in the next 12-18 months. At Dartmouth alone there are 34,000 active certificates and about 1,500 server certificates issued from the Dartmouth PKI.

"It's rewarding to see the real-world impact that PKI researchers and practitioners like Scott and Max are having," says Sean Smith, associate professor of computer science and ISTS faculty affiliate. "It's also great to see the institutional support that Dartmouth gives to technological innovation - and in bringing this new technology to the higher ed community at large." Smith co-founded Dartmouth's PKI laboratory in 2000.

Research Director of ISTS Denise Anthony sees the role of Dartmouth as one of mentor or parent when it comes to PKI and PRQP. "Dartmouth faculty members and researchers led by Sean Smith have been at the forefront of PKI technology for more than 9 years," says Anthony. "Our students, grad students, and post-docs have learned about this emerging technology since it was born. And we continue to be involved as PKI and PQRP go global and become the standard way to deploy inter-operable computing security." Anthony is also an associate professor and chair of sociology at Dartmouth.

Dartmouth has a long history of pushing the computing envelope, from hosting the first demonstration of remote computing using standard phone lines in 1940 to convening the conference in 1956 that coined the term Artificial Intelligence to being the home of the birthplace of the BASIC computing language and the Dartmouth Time Sharing System. Dartmouth was also one of the first institutions of higher education to deploy a wireless network and converge computing, voice, and television on its data network.

Source: Dartmouth College


Rank not rated yet
Related Stories
Relevant PhysicsForums posts
  • How to calculate total compressibility in liquid porous solid system
    created3 hours ago
  • Need help reading 3-D
    created23 hours ago
  • A way to send and receive wireless data
    createdFeb 11, 2012
  • Calling function with no input argument
    createdFeb 10, 2012
  • Force free body diagram problem on gym equipment
    createdFeb 10, 2012
  • Empirical data regarding shower heads and water
    createdFeb 10, 2012
  • More from Physics Forums - General Engineering

More news stories

Google might launch Drive for cloud storage soon

(PhysOrg.com) -- Google's next big move, according to the Wall Street Journal, is a cloud storage service called Drive. Hardly first to the plate, Google is simply catching up to introducing its cloud reposi ...

Technology / Internet

created 11 hours ago | popularity 4.8 / 5 (5) | comments 4 | with audio podcast report

Iran blocks email, restricts net access: reports

Iran has further restricted access to the Internet and blocked popular email services for the past few days, in a move a top lawmaker said could "cost the regime dearly," media reports said on Sunday.

Technology / Internet

created 4 hours ago | popularity 5 / 5 (1) | comments 3

Love a click away in Indonesia's Twitter Republic

He was a geeky kid from Yogyakarta, she a glamorous city girl in Jakarta. In a country with one of the world's most vibrant social networking scenes they fell in love on Twitter.

Technology / Internet

created 12 hours ago | popularity 4 / 5 (1) | comments 0

Walney offshore wind farm is world's biggest (for now)

(PhysOrg.com) -- The Walney wind farm on the Irish Sea--characterized by high tides, waves and windy weather--officially opened this week. The farm is treated in the press as a very big deal as the Walney ...

Technology / Energy & Green Tech

created Feb 11, 2012 | popularity 4.2 / 5 (13) | comments 45 | with audio podcast weblog

Navy to begin tests on electromagnetic railgun prototype launcher

The Office of Naval Research (ONR)'s Electromagnetic (EM) Railgun program will take an important step forward in the coming weeks when the first industry railgun prototype launcher is tested at a facility ...

Technology / Engineering

created Feb 06, 2012 | popularity 4.5 / 5 (17) | comments 94 | with audio podcast


Overeating may double risk of memory loss

New research suggests that consuming between 2,100 and 6,000 calories per day may double the risk of memory loss, or mild cognitive impairment (MCI), among people age 70 and older. The study was released today and will be ...

Scientists discover molecular secrets of 2,000-year-old Chinese herbal remedy

For roughly two thousand years, Chinese herbalists have treated Malaria using a root extract, commonly known as Chang Shan, from a type of hydrangea that grows in Tibet and Nepal. More recent studies suggest that halofuginone, ...

New method to examine batteries -- MRI from the inside

There is an ever-increasing need for advanced batteries for portable electronics, such as phones, cameras, and music players, but also to power electric vehicles and to facilitate the distribution and storage of energy derived ...

Injured boomers beware: Know when to see doctor

(AP) -- It happened to nurse Jane Byron years after an in-line skating fall, business owner Haralee Weintraub while doing "men's" push-ups, and avid cyclist Gene Wilberg while lifting a heavy box.

Lab study raises questions over nano-particle impact

Tests involving chickens have raised questions about the impact on health from engineered nano-particles, the ultra-fine grains commonly used in drugs and processed foods, scientists said on Sunday.

A mitosis mystery solved: How chromosomes align perfectly in a dividing cell

Although the process of mitotic cell division has been studied intensely for more than 50 years, Whitehead Institute researchers have only now solved the mystery of how cells correctly align their chromosomes during symmetric ...