AuthLedger: A novel blockchain-based domain name authentication scheme

Zhi Guan, Abba Garba, Anran Li, Zhong Chen, Nesrine Kaaniche

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Nowadays public key infrastructure authentication mainly rely on certificate authorities and have to be trusted by both domain operators and domain owners. Domain Name System Security Extensions (DNSSEC) using DNS-based Authentication Name Entities (DANE) DNS records types, offer additional security for authenticating data and integrity to domain name system (DNS). This method allow client via signed statements to specify which CAs are authorized to represent certificate of a domain. Another method is Certificate Authority Authorizations (CAA) developed by Internet Engineering Task Force (IETF) to provide security guarantee against rogue certificate authorities that offer fake certificate for the domain. However, all of these approaches are prone to single point of failure due to their trust attached to infrastructure like Internet Corporation for Assigned Names and Numbers (ICANN). In order to weaken the level of trust to the CAs over certificates, it is necessary to balance the distribution rights among the entities and improve the control of certificate issuance for the certificate owners. Recently with the emergence of Blockchain, a public and distributed ledger, several applications appeared taking advantage of this powerful technology. In this paper, we present an AuthLedger a domain authentication scheme based on blockchain technology. The proposed scheme is multi-fold. First, we proposed a domain authentication scheme to reduce the level of trust in CAs. second, we implement our system using Ethereum smart contract. Third, we evaluate security and performance of the proposed system.

Original languageEnglish
Title of host publicationICISSP 2019 - Proceedings of the 5th International Conference on Information Systems Security and Privacy
EditorsPaolo Mori, Steven Furnell, Olivier Camp
PublisherSciTePress
Pages345-352
Number of pages8
ISBN (Electronic)9789897583599
DOIs
Publication statusPublished - 1 Jan 2019
Externally publishedYes
Event5th International Conference on Information Systems Security and Privacy, ICISSP 2019 - Prague, Czech Republic
Duration: 23 Feb 201925 Feb 2019

Publication series

NameICISSP 2019 - Proceedings of the 5th International Conference on Information Systems Security and Privacy

Conference

Conference5th International Conference on Information Systems Security and Privacy, ICISSP 2019
Country/TerritoryCzech Republic
CityPrague
Period23/02/1925/02/19

Keywords

  • Authentication
  • Blockchain
  • Cryptography
  • PKI

Fingerprint

Dive into the research topics of 'AuthLedger: A novel blockchain-based domain name authentication scheme'. Together they form a unique fingerprint.

Cite this