Extending TLS with KMIP protocol for cloud computing

Mounira Msahli, Ahmed Serhrouchni, Mohamad Badra

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Any information system using encryption tends to have its own key management infrastructure. In practice, we find a separate key management systems dedicated to application encryption, or database encryption, or file encryption etc. This emergent needs to several key management systems and multiple cryptographic algorithms are resolved by the new Key Management Interoperability Protocol (KMIP). This work specifies how the Key Management Interoperability Protocol (KMIP) can be included in Transport Layer Security (TLS) protocol in order to provide additional security features, flexibility, interoperability and authentication specially in distributed systems like Cloud Computing. Till now, authentication in TLS is limited to digital certificate and Kerberos. In this paper, we use the Key Management Interoperability Protocol to make an additional authentication option for TLS and we reduce handshake latency to 0-RTT for repeated handshakes and 1-RTT for full handshakes. We specify also the KMIP-TLS extension and its formal validation with AVISPA tool.

Original languageEnglish
Title of host publication2016 8th IFIP International Conference on New Technologies, Mobility and Security, NTMS 2016
EditorsMohamad Badra, Giovanni Pau, Vasos Vassiliou
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781509029143
DOIs
Publication statusPublished - 20 Dec 2016
Externally publishedYes
Event8th IFIP International Conference on New Technologies, Mobility and Security, NTMS 2016 - Larnaca, Cyprus
Duration: 21 Nov 201623 Nov 2016

Publication series

Name2016 8th IFIP International Conference on New Technologies, Mobility and Security, NTMS 2016

Conference

Conference8th IFIP International Conference on New Technologies, Mobility and Security, NTMS 2016
Country/TerritoryCyprus
CityLarnaca
Period21/11/1623/11/16

Keywords

  • AVISPA
  • Authentication
  • Cloud
  • Key management interoperability Protocol
  • Security
  • TLS

Fingerprint

Dive into the research topics of 'Extending TLS with KMIP protocol for cloud computing'. Together they form a unique fingerprint.

Cite this