{"id":"https://openalex.org/W1800976538","doi":"https://doi.org/10.3233/jcs-140509","title":"CA trust management for the Web PKI","display_name":"CA trust management for the Web PKI","publication_year":2014,"publication_date":"2014-12-16","ids":{"openalex":"https://openalex.org/W1800976538","doi":"https://doi.org/10.3233/jcs-140509","mag":"1800976538"},"language":"en","primary_location":{"id":"doi:10.3233/jcs-140509","is_oa":true,"landing_page_url":"https://doi.org/10.3233/jcs-140509","pdf_url":"https://content.iospress.com:443/download/journal-of-computer-security/jcs509?id=journal-of-computer-security%2Fjcs509","source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://content.iospress.com:443/download/journal-of-computer-security/jcs509?id=journal-of-computer-security%2Fjcs509","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5108100390","display_name":"Johannes Braun","orcid":null},"institutions":[{"id":"https://openalex.org/I31512782","display_name":"Technische Universit\u00e4t Darmstadt","ror":"https://ror.org/05n911h24","country_code":"DE","type":"education","lineage":["https://openalex.org/I31512782"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Johannes Braun","raw_affiliation_strings":["Theoretical Computer Science, Cryptography and Computer Algebra, Technische Universit\u00e4t Darmstadt, Darmstadt, Germany. E-mails: jbraun@cdc.informatik.tu-darmstadt.de, buchmann@cdc.informatik.tu-darmstadt.de"],"affiliations":[{"raw_affiliation_string":"Theoretical Computer Science, Cryptography and Computer Algebra, Technische Universit\u00e4t Darmstadt, Darmstadt, Germany. E-mails: jbraun@cdc.informatik.tu-darmstadt.de, buchmann@cdc.informatik.tu-darmstadt.de","institution_ids":["https://openalex.org/I31512782"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076514445","display_name":"Florian V\u00f6lk","orcid":"https://orcid.org/0000-0002-2425-1088"},"institutions":[{"id":"https://openalex.org/I31512782","display_name":"Technische Universit\u00e4t Darmstadt","ror":"https://ror.org/05n911h24","country_code":"DE","type":"education","lineage":["https://openalex.org/I31512782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Florian Volk","raw_affiliation_strings":["Telecooperation Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mails: florian.volk@cased.de, max@informatik.tu-darmstadt.de"],"affiliations":[{"raw_affiliation_string":"Telecooperation Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mails: florian.volk@cased.de, max@informatik.tu-darmstadt.de","institution_ids":["https://openalex.org/I31512782"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016475244","display_name":"Jiska Classen","orcid":null},"institutions":[{"id":"https://openalex.org/I31512782","display_name":"Technische Universit\u00e4t Darmstadt","ror":"https://ror.org/05n911h24","country_code":"DE","type":"education","lineage":["https://openalex.org/I31512782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Jiska Classen","raw_affiliation_strings":["Secure Mobile Networking Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mail: jiska.classen@seemoo.tu-darmstadt.de"],"affiliations":[{"raw_affiliation_string":"Secure Mobile Networking Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mail: jiska.classen@seemoo.tu-darmstadt.de","institution_ids":["https://openalex.org/I31512782"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058021952","display_name":"Johannes Buchmann","orcid":"https://orcid.org/0000-0001-8995-3446"},"institutions":[{"id":"https://openalex.org/I31512782","display_name":"Technische Universit\u00e4t Darmstadt","ror":"https://ror.org/05n911h24","country_code":"DE","type":"education","lineage":["https://openalex.org/I31512782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Johannes Buchmann","raw_affiliation_strings":["Theoretical Computer Science, Cryptography and Computer Algebra, Technische Universit\u00e4t Darmstadt, Darmstadt, Germany. E-mails: jbraun@cdc.informatik.tu-darmstadt.de, buchmann@cdc.informatik.tu-darmstadt.de"],"affiliations":[{"raw_affiliation_string":"Theoretical Computer Science, Cryptography and Computer Algebra, Technische Universit\u00e4t Darmstadt, Darmstadt, Germany. E-mails: jbraun@cdc.informatik.tu-darmstadt.de, buchmann@cdc.informatik.tu-darmstadt.de","institution_ids":["https://openalex.org/I31512782"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5021712397","display_name":"Max M\u00fchlh\u00e4user","orcid":"https://orcid.org/0000-0003-4713-5327"},"institutions":[{"id":"https://openalex.org/I31512782","display_name":"Technische Universit\u00e4t Darmstadt","ror":"https://ror.org/05n911h24","country_code":"DE","type":"education","lineage":["https://openalex.org/I31512782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Max M\u00fchlh\u00e4user","raw_affiliation_strings":["Telecooperation Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mails: florian.volk@cased.de, max@informatik.tu-darmstadt.de"],"affiliations":[{"raw_affiliation_string":"Telecooperation Lab, Technische Universit\u00e4t Darmstadt and CASED, Darmstadt, Germany. E-mails: florian.volk@cased.de, max@informatik.tu-darmstadt.de","institution_ids":["https://openalex.org/I31512782"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5108100390"],"corresponding_institution_ids":["https://openalex.org/I31512782"],"apc_list":null,"apc_paid":null,"fwci":6.268,"has_fulltext":true,"cited_by_count":28,"citation_normalized_percentile":{"value":0.95771946,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"22","issue":"6","first_page":"913","last_page":"959"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":1.0,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":1.0,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9987999796867371,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10742","display_name":"Peer-to-Peer Network Technologies","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/public-key-infrastructure","display_name":"Public key infrastructure","score":0.8936763405799866},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6734062433242798},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6567124128341675},{"id":"https://openalex.org/keywords/reputation","display_name":"Reputation","score":0.58073890209198},{"id":"https://openalex.org/keywords/single-point-of-failure","display_name":"Single point of failure","score":0.5665776133537292},{"id":"https://openalex.org/keywords/attack-surface","display_name":"Attack surface","score":0.5261380672454834},{"id":"https://openalex.org/keywords/computational-trust","display_name":"Computational trust","score":0.491001158952713},{"id":"https://openalex.org/keywords/certificate-authority","display_name":"Certificate authority","score":0.4775310754776001},{"id":"https://openalex.org/keywords/trust-anchor","display_name":"Trust anchor","score":0.47659939527511597},{"id":"https://openalex.org/keywords/web-of-trust","display_name":"Web of trust","score":0.47649019956588745},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.4494554102420807},{"id":"https://openalex.org/keywords/trust-management","display_name":"Trust management (information system)","score":0.43502047657966614},{"id":"https://openalex.org/keywords/certification","display_name":"Certification","score":0.42400598526000977},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.37571877241134644},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.3289774954319},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.12648466229438782}],"concepts":[{"id":"https://openalex.org/C72648740","wikidata":"https://www.wikidata.org/wiki/Q658476","display_name":"Public key infrastructure","level":4,"score":0.8936763405799866},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6734062433242798},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6567124128341675},{"id":"https://openalex.org/C48798503","wikidata":"https://www.wikidata.org/wiki/Q877546","display_name":"Reputation","level":2,"score":0.58073890209198},{"id":"https://openalex.org/C165136773","wikidata":"https://www.wikidata.org/wiki/Q1363179","display_name":"Single point of failure","level":2,"score":0.5665776133537292},{"id":"https://openalex.org/C2776576444","wikidata":"https://www.wikidata.org/wiki/Q303569","display_name":"Attack surface","level":2,"score":0.5261380672454834},{"id":"https://openalex.org/C160521178","wikidata":"https://www.wikidata.org/wiki/Q5157345","display_name":"Computational trust","level":3,"score":0.491001158952713},{"id":"https://openalex.org/C93636275","wikidata":"https://www.wikidata.org/wiki/Q196776","display_name":"Certificate authority","level":4,"score":0.4775310754776001},{"id":"https://openalex.org/C154800190","wikidata":"https://www.wikidata.org/wiki/Q16941470","display_name":"Trust anchor","level":4,"score":0.47659939527511597},{"id":"https://openalex.org/C157424077","wikidata":"https://www.wikidata.org/wiki/Q1928707","display_name":"Web of trust","level":4,"score":0.47649019956588745},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.4494554102420807},{"id":"https://openalex.org/C2776384856","wikidata":"https://www.wikidata.org/wiki/Q17145767","display_name":"Trust management (information system)","level":2,"score":0.43502047657966614},{"id":"https://openalex.org/C46304622","wikidata":"https://www.wikidata.org/wiki/Q374814","display_name":"Certification","level":2,"score":0.42400598526000977},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.37571877241134644},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.3289774954319},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.12648466229438782},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.3233/jcs-140509","is_oa":true,"landing_page_url":"https://doi.org/10.3233/jcs-140509","pdf_url":"https://content.iospress.com:443/download/journal-of-computer-security/jcs509?id=journal-of-computer-security%2Fjcs509","source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.698.1500","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.698.1500","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"https://www.cdc.informatik.tu-darmstadt.de/reports/reports/CA_trust_mgmt.pdf","raw_type":"text"},{"id":"pmh:oai:tubiblio.ulb.tu-darmstadt.de:101833","is_oa":false,"landing_page_url":"http://tubiblio.ulb.tu-darmstadt.de/101833/","pdf_url":null,"source":{"id":"https://openalex.org/S4377196390","display_name":"TUbilio (Technical University of Darmstadt)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I31512782","host_organization_name":"Technische Universit\u00e4t Darmstadt","host_organization_lineage":["https://openalex.org/I31512782"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Artikel"}],"best_oa_location":{"id":"doi:10.3233/jcs-140509","is_oa":true,"landing_page_url":"https://doi.org/10.3233/jcs-140509","pdf_url":"https://content.iospress.com:443/download/journal-of-computer-security/jcs509?id=journal-of-computer-security%2Fjcs509","source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","score":0.5899999737739563,"id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W1800976538.pdf","grobid_xml":"https://content.openalex.org/works/W1800976538.grobid-xml"},"referenced_works_count":48,"referenced_works":["https://openalex.org/W89672345","https://openalex.org/W1490838413","https://openalex.org/W1502759548","https://openalex.org/W1544095305","https://openalex.org/W1550000763","https://openalex.org/W1567409052","https://openalex.org/W1593990048","https://openalex.org/W1598916329","https://openalex.org/W1599112090","https://openalex.org/W1604936042","https://openalex.org/W1843286227","https://openalex.org/W1891363781","https://openalex.org/W1912497050","https://openalex.org/W1977556410","https://openalex.org/W1980854127","https://openalex.org/W2004515004","https://openalex.org/W2011430131","https://openalex.org/W2022259081","https://openalex.org/W2035301550","https://openalex.org/W2039485820","https://openalex.org/W2045591401","https://openalex.org/W2054311641","https://openalex.org/W2061870637","https://openalex.org/W2087092764","https://openalex.org/W2087396881","https://openalex.org/W2097726984","https://openalex.org/W2098383743","https://openalex.org/W2104899073","https://openalex.org/W2110689325","https://openalex.org/W2130867912","https://openalex.org/W2133259965","https://openalex.org/W2135300639","https://openalex.org/W2136039867","https://openalex.org/W2139565456","https://openalex.org/W2140410185","https://openalex.org/W2154282625","https://openalex.org/W2161601094","https://openalex.org/W2162600177","https://openalex.org/W2170496240","https://openalex.org/W2170858213","https://openalex.org/W2186028149","https://openalex.org/W2233063544","https://openalex.org/W4248223175","https://openalex.org/W4297662257","https://openalex.org/W6600195515","https://openalex.org/W6634576642","https://openalex.org/W6668345831","https://openalex.org/W6756413070"],"related_works":["https://openalex.org/W2545277503","https://openalex.org/W2587062340","https://openalex.org/W2563233917","https://openalex.org/W1845088154","https://openalex.org/W2127807338","https://openalex.org/W2106097339","https://openalex.org/W2369694906","https://openalex.org/W2556159764","https://openalex.org/W3031702509","https://openalex.org/W1843286227"],"abstract_inverted_index":{"The":[0],"steadily":[1],"growing":[2],"number":[3],"of":[4,55,101,131,150,158,163],"certification":[5],"authorities":[6],"(CAs)":[7],"assigned":[8],"to":[9,33,86,105,146],"the":[10,39,46,89,96,102,129,132,148,155],"Web":[11,47,103,134],"Public":[12],"Key":[13],"Infrastructure":[14],"(Web":[15],"PKI)":[16],"and":[17,57,125],"trusted":[18,159],"by":[19,83,94,113,139,175],"current":[20,40],"browsers":[21],"imposes":[22],"severe":[23],"security":[24],"issues.":[25],"Apart":[26],"from":[27],"being":[28],"impossible":[29],"for":[30],"relying":[31,84,115],"entities":[32,85,152],"assess":[34],"whom":[35],"they":[36],"actually":[37,111],"trust,":[38],"binary":[41],"trust":[42,72,77,97],"model":[43],"implemented":[44],"with":[45,165],"PKI":[48,104],"makes":[49],"each":[50],"CA":[51,71],"a":[52,69,114],"single":[53],"point":[54],"failure":[56],"creates":[58],"an":[59,140,171],"enormous":[60],"attack":[61,90,172],"surface.":[62,91],"In":[63],"this":[64],"article,":[65],"we":[66],"present":[67],"CA-TMS,":[68],"user-centric":[70],"management":[73],"system":[74,143],"based":[75,120],"on":[76,121],"views.":[78],"CA-TMS":[79,92,136,164],"can":[80],"be":[81],"used":[82],"individually":[87],"reduce":[88],"works":[93],"restricting":[95],"placed":[98],"in":[99,107],"CAs":[100,110],"trusting":[106],"exactly":[108],"those":[109],"required":[112],"entity.":[116],"This":[117],"restriction":[118],"is":[119,137,179],"locally":[122],"collected":[123],"information":[124],"does":[126],"not":[127],"require":[128],"alteration":[130],"existing":[133],"PKI.":[135],"complemented":[138],"optional":[141],"reputation":[142],"that":[144,170],"allows":[145],"utilize":[147],"knowledge":[149],"other":[151],"while":[153],"maintaining":[154],"minimal":[156],"set":[157],"CAs.":[160],"Our":[161],"evaluation":[162],"real":[166],"world":[167],"data":[168],"shows":[169],"surface":[173],"reduction":[174],"more":[176],"than":[177],"95%":[178],"achievable.":[180]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":4},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":6},{"year":2019,"cited_by_count":2},{"year":2018,"cited_by_count":3},{"year":2017,"cited_by_count":3},{"year":2015,"cited_by_count":2},{"year":2014,"cited_by_count":1}],"updated_date":"2026-04-05T17:49:38.594831","created_date":"2025-10-10T00:00:00"}
