Geneva, Switzerland, 15-16 September 2014 X.509 in a changing world Erik Andersen, Andersen’s L-Service Denmark ITU Workshop on “ICT Security.

Slides:



Advertisements
Similar presentations
ICT research priorities and recommendations for strategy development in the WBC Ulrike Kunze / PT-DLR, Germany Consultation session on recommendations.
Advertisements

© Copyright International Telecommunication Union (ITU). All Rights Reserved page - 1 Alexander NTOKO Project Manager, ITU Electronic Commerce.
Enhanced Collaboration in Europe Region
Use of Public-Key Infrastructure (PKI) Erik Andersen Association for the Directory Information and Related Search Industry (EIDQ -
International Telecommunication Union ITU-D Overview.
Experiences with Massive PKI Deployment and Usage Daniel Kouřil, Michal Procházka Masaryk University & CESNET Security and Protection of Information 2009.
Supporting National e-Health Roadmaps WHO-ITU-WB joint effort WSIS C7 e-Health Facilitation Meeting 13 th May 2010 Hani Eskandar ICT Applications, ITU.
Geneva, Switzerland, September 2012 m-Cloud for Homecare - Policy & Regulatory Challenges - Francesca Fontana, Associate at ICT Legal Consulting.
Cloud computing security related works in ITU-T SG17
Secure Communication Architectures.
Geneva, Switzerland, 2 June 2014 Introduction to public-key infrastructure (PKI) Erik Andersen, Q.11 Rapporteur, ITU-T Study Group 17 ITU Workshop.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All The Internet of Things (IoT) aka Machine 2 Machine (M2M) Bilel Jamoussi Chief, Study Groups Department.
DESIGNING A PUBLIC KEY INFRASTRUCTURE
. Smart Cities and the Ageing Population Sustainable smart cities: from vision to reality 13 October ITU, Geneva Knud Erik Skouby, CMI/ Aalborg University-Cph.
Geneva, Switzerland, 14 November 2014 Cloud Computing - Overview and Vocabulary (Y.3500) Eric A. Hibbard, CISSP, CISA CTO Security & Privacy Hitachi Data.
Geneva, Switzerland, September 2014 Lightweight Cryptography for the Connected Car/ITS Security Shiho Moriai Director, Security Fundamentals Laboratory,
(Geneva, Switzerland, September 2014)
Geneva, Switzerland, 4 December 2014 ITU-T Study Group 17 activities in the context of digital financial services and inclusion: Security and Identity.
Geneva, Switzerland, September 2014 ENISA role in ICT standardization Sławomir Górniak, ENISA ITU Workshop on “ICT.
Geneva, Switzerland, September 2014 Introduction of ISO/IEC Identity Proofing Patrick Curry Director, British Business Federation Authority.
Frugal Innovations & Standardisation Ajay Ranjan Mishra*, Prof Jaideep Prahbu** *Chairman, FG Innovations, ITU **Head of Marketing, JBS, Cambridge Univ,
DOCUMENT #:GSC15-GTSC-05 FOR:Presentation SOURCE:ITU-T AGENDA ITEM:4.1 NGN, Testing specification and Beyond Chaesub.
ITU Encouraging the deployment of IPv6 in the developing countries IPv6 workshop, Communications and Information Technology Commission (CITC). Riyadh,
International Telecommunication Union CHALLENGING POLICY STEPS TOWARDS IMPLEMENTING COMMON ALERTING PLATFORMS Orhan Osmani Emergency Telecommunications.
1 Using PKI for the Census MSIS 2004, Geneva Mel Turner, Lise Duquet Statistics Canada.
ITU Workshop on "Future Trust and Knowledge Infrastructure", Phase 1 Geneva, Switzerland, 24 April 2015 The Open and Trustworthy ICT Platform Prof. Dr.
Grid Security Issues Shelestov Andrii Space Research Institute NASU-NSAU, Ukraine.
Linked-data and the Internet of Things Payam Barnaghi Centre for Communication Systems Research University of Surrey March 2012.
Geneva, Switzerland, September 2014 Identity Based Attestation and Open Exchange Protocol (IBOPS) Scott Streit Chief Scientist.
DICOM and ISO/TC215 Hidenori Shinoda Charles Parisot.
Geneva, Switzerland, April 2012 Introduction to session 7 - “Advancing e-health standards: Roles and responsibilities of stakeholders” ​ Marco Carugi.
Geneva, Switzerland, 17 October 2011 Summary of Session 4: SDP standardization status and requirements Huilan Lu, Ph.D. SG 13 Vice Chairman ITU Workshop.
Geneva, Switzerland, 13 July 2013 Welcome Stephen J. Trowbridge, Chairman, ITU-T Study Group 15 Joint IEEE-SA and ITU Workshop on Ethernet.
Geneva, Switzerland, September 2014 Considerations for implementing secure enterprise mobility Eileen Bridges Aetna GIS Director.
Jeju Island 2009 = Jeju island demo 2013 = smart city deployment 2020 = Metropolitan Area Deployment 2030 = Nationwide Deployment.
ITU Overview Empowering global ICT development Malcolm Johnson DOCUMENT #:GSC13-XXXX-nn FOR:Presentation SOURCE:ITU AGENDA ITEM:Opening Plenary, 4.6 CONTACT(S):Malcolm.
ENISA efforts for securing European Internet Infrastructure
International Telecommunication Union Geneva, 9(pm)-10 February 2009 BEST PRACTICES FOR ORGANIZING NATIONAL CYBERSECURITY EFFORTS James Ennis US Department.
International Telecommunication Union Geneva, 9(pm)-10 February 2009 Identification Services as provided by directories (X.500 incl. X509) Erik Andersen,
Geneva, Switzerland, September 2014 ITU-T SG 17 Identity management (IdM) Progress Report Abbie Barbir Ph.D., ITU-T Study Group 17 Q10/17 (Identity.
COPYRIGHT © 2012 ALCATEL-LUCENT. ALL RIGHTS RESERVED. Gabrielle Gauthey, Public Affairs, Alcatel-Lucent November 2012 ALCATEL-LUCENT Public Policy Recommendations.
18/05/2014 Riyadh Eng. Suhail Al-Almaee Director Strategic Planning and Supporting Initiatives Smart Government.
International Telecommunication Union ITU-T Cybersecurity Symposium - Florianópolis, Brazil, 4 October 2004 Infrastructure Security: The impact on Telecommunications.
Bangalore, India,17-18 December 2012 Bridging the Standardization Gap (BSG) Toby Johnson, Senior Comms Officer, ITU Joint ITU-GISFI.
ITU - Empowering global ICT development Malcolm Johnson DOCUMENT #:GSC13-PLEN-44 FOR:Presentation SOURCE:ITU AGENDA ITEM:Opening Plenary, 4.6 CONTACT(S):Malcolm.
Geneva, Switzerland, September 2014 Session 1 – ICT infrastructure development, new security threats and counter-measures Patrick Mwesigwa, Director/Technology,
Framework Decision 909 -from a practical perspective – Europris Amsterdam, 25 January 2013.
International Telecommunication Union Committed to connecting the world Overview of ITU-T/SG5 “Environment and climate change” Ahmed Zeddam Chairman of.
Mohssen Mohammed Sakib Pathan Building Customer Trust in Cloud Computing with an ICT-Enabled Global Regulatory Body Mohssen Mohammed Sakib Pathan.
CHALLENGES OF MANAGING THE OPEN DATA PORTALS GROUP 4.
Striving to achieve Cristina Bueti Advisor. What does the future hold? 2.
4 th SG13 Regional Workshop for Africa on “Future Networks for a better Africa: IMT-2020, Trust, Cloud Computing and Big Data” (Accra, Ghana, March.
A Global Approach to EMF Management and Standards Mike Wood Vice Chairman, ITU-T SG5, WP2 11th Symposium on ICT, Environment and Climate Change 21 April.
The ITU-T X.500 series and X.509 in a changing world
Similarities between Grid-enabled Medical and Engineering Applications
ITU-T Study Group 17 Security
ITU an Overview Combined International SNO and 8th African SNO
Cloud & Developing Nations
Jaroslaw K. PONDER Head of ITU Office for Europe
E-Commerce for Developing Countries (EC-DC)
(Geneva, Switzerland, September 2014)
ITU Overview Empowering global ICT development Malcolm Johnson
Group Meeting Ming Hong Tsai Date :
Postal & Telecommunications Regulatory Authority of Zimbabwe (POTRAZ)
Session 5 Trust services and cloud security
ITU-T Study Group 17 Security
Martin Euchner, Advisor, ITU-T Study Group 17
Moderator Mohamed M. K. Elhaj
Title of presentation Verdana 32
Updates on TSB tools and services TSAG Information Session
Presentation transcript:

Geneva, Switzerland, September 2014 X.509 in a changing world Erik Andersen, Andersen’s L-Service Denmark ITU Workshop on “ICT Security Standardization for Developing Countries” (Geneva, Switzerland, September 2014)

Rec. ITU-T X.509 until now The base specification for pubic-key infrastructure (PKI) First edition in 1988 Seventh edition in 2012 Widely deployed in the world Banking E-government Health Etc. Geneva, Switzerland, September 20142

What is PKI about? Trust (trust anchor concept) Validation of authenticity of information But also: Privacy and confidentiality Non-reputiation Tools and procedures for above Geneva, Switzerland, September PKI is about:

A changing world New countries are entering the PKI world Cloud computing Mobile technology Machine-to machine (M2M) communications In particular: Smart Grid with millions of entities Geneva, Switzerland, September 20144

A changing environment Constraint environments: Memory constraints Processing capacity Bandwidth constraint Time constraints Economic constraints Mobile applications Huge networks Geneva, Switzerland, September 20145

Other requirements Higher level of security by adaptability to different applications Protection of the users Ease of PKI establishment Ease of PKI maintenance Geneva, Switzerland, September 20146

What about Rec. ITU-T X.509? Geneva, Switzerland, September Rec. ITU-T X.509 must respond to these changing conditions to allow for secure networks also in the future

Future of Rec. ITU-T X.509 Eighth edition is a significant update expected in 2016: Removal of ambiguities Consistent and current terminology Whitelists (fast validation) Trust broker (secure validation) Machine readable policies (user assistance) Etc. Geneva, Switzerland, September 20148

Supplementary specifications X.509 needs supplementary specifications: Profiles and best practices (planned for 2016) Automated PKI establishment and maintenance (planned for 2016) Geneva, Switzerland, September 20149

Conclusions and Recommendations The intension is to enhance X.509 to meet future challenges We need to develop a new generation of PKI experts An educational project should be established Geneva, Switzerland, September