SlideShare une entreprise Scribd logo
1  sur  12
Télécharger pour lire hors ligne
World e-Id and Cybersecurity Conference
Sept. 17 2015
Laurent Henocque - KeeeX - Marseille
How Social Certificates May
Help Build Decentralized Trust
The situation
‣ Trusted tiers cannot be trusted to protect our
data, which may further be attacked on the air
‣ Certificate authorities may perform a loose
job at ensuring who a an emitter is.
‣ Certificates are complex to obtain, expensive,
have somehow missed their e-identity market
‣ Certificates expire, they are almost never
revoked. Revoking is expensive.
2
Certificate Pyramid / Chain in Short
Trusted Authority
Self Signed
Root Certificate
'topaz'
Private key digitally signs
the public key of company certificate
Private key
digitally signs
the hash ‘topaz’
Company
Certificate
Digitally
signs
the public
key of user
certificateThe file has
proven
integrity
and
certified
author
The two functions of a certificate
can be distributed
‣ Decentralized, autonomous file integrity is
possible (immune to attacks)
‣ Socially enforced certificates allow for a
unique e-ID scheme
4
Decentralized Integrity
‣ Solutions exist to embed file integrity in
documents
‣ adobe pdf, microsoft office implement this
‣ KeeeX implements this for 250+ file formats
‣ When a file is obtained, it’s integrity can be
checked offline, independently from a trusted
tier
5
Decentralized Authenticity
‣ The public key of a user needs not be digitally
signed by a certificate hierarchy
‣ The public key of a user can be signed by
other users!
‣ The signing private/public keypair of a user
can be picked by the user himself
‣ The signing private/public keypair of a user
can be replaced and revoked at anytime
6
Your public key can be signed by
someone who knows you!
…
‘topaz’	
  
+	
  
public	
  Key	
  
+	
  
signature Private key
digitally signs
the hash ‘topaz’
Your public key can be
stored inside the file!
The file has proven integrity
and certified author
How do you create your own
certificate?
‣ You create an ECC KeyPair, either randomly, or
from a self defined passphrase
‣ The public key is very short (<40 chars) and
easily fits within any file
‣ Then other people will certify your identity by
‣ digitally signing documents that refer to
documents that you have signed yourself, or
‣ files that explicitly contain your public key
8
For instance use Bitcoin Addresses
‣ Public key would be 1Gr8a8XKW…ERTDtya
9
Signatures can be verified offline
10
‣ Below is a valid signature of xirap-no…ox by
my real public key: 16VjbG…SaBSA
Conclusion
‣ Solutions exist to achieve the social (peer)
certification of user defined e-identities
‣ It is cost effective
‣ It is under control
‣ It can be verified using publicly available
tools
11
12
Thanks for listening
Meet us at World Smart WeeeK
Laurent Henocque, laurent@keeex.net, +33 683 88 20 01
KeeeX SAS, RCS Marseille 807 570 148

Pôle Média Belle de Mai CS 20038 – 37 Rue Guibal – 13356 Marseille cedex 03

Tel: +33 4 91 05 64 47

Contenu connexe

Plus de Laurent Henocque

The KeeeX teaser 2015-12-23-lh-xovoz-tonos
The KeeeX teaser 2015-12-23-lh-xovoz-tonosThe KeeeX teaser 2015-12-23-lh-xovoz-tonos
The KeeeX teaser 2015-12-23-lh-xovoz-tonosLaurent Henocque
 
The KeeeX Teaser xukih-masav-dafik
The KeeeX Teaser xukih-masav-dafikThe KeeeX Teaser xukih-masav-dafik
The KeeeX Teaser xukih-masav-dafikLaurent Henocque
 
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocyk
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocykKeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocyk
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocykLaurent Henocque
 
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumak
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumakKeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumak
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumakLaurent Henocque
 
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buder
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buderKeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buder
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buderLaurent Henocque
 
Keeex - On data governance - xofos-bafek-zebug
Keeex - On data governance - xofos-bafek-zebugKeeex - On data governance - xofos-bafek-zebug
Keeex - On data governance - xofos-bafek-zebugLaurent Henocque
 
JavaStates Simple Tutorial
JavaStates Simple TutorialJavaStates Simple Tutorial
JavaStates Simple TutorialLaurent Henocque
 

Plus de Laurent Henocque (7)

The KeeeX teaser 2015-12-23-lh-xovoz-tonos
The KeeeX teaser 2015-12-23-lh-xovoz-tonosThe KeeeX teaser 2015-12-23-lh-xovoz-tonos
The KeeeX teaser 2015-12-23-lh-xovoz-tonos
 
The KeeeX Teaser xukih-masav-dafik
The KeeeX Teaser xukih-masav-dafikThe KeeeX Teaser xukih-masav-dafik
The KeeeX Teaser xukih-masav-dafik
 
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocyk
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocykKeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocyk
KeeeX Simple Tutorial 20150106-lh-keeex-xovek-zidec-bocyk
 
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumak
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumakKeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumak
KeeeX le tutoriel simple 20150106-lh-keeex-xutar-velec-bumak
 
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buder
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buderKeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buder
KeeeX as a Survival Kit in the Digital Jungle 20141229-LH-KX-xulig-nimyr-buder
 
Keeex - On data governance - xofos-bafek-zebug
Keeex - On data governance - xofos-bafek-zebugKeeex - On data governance - xofos-bafek-zebug
Keeex - On data governance - xofos-bafek-zebug
 
JavaStates Simple Tutorial
JavaStates Simple TutorialJavaStates Simple Tutorial
JavaStates Simple Tutorial
 

Dernier

ANCHORING SCRIPT FOR A CULTURAL EVENT.docx
ANCHORING SCRIPT FOR A CULTURAL EVENT.docxANCHORING SCRIPT FOR A CULTURAL EVENT.docx
ANCHORING SCRIPT FOR A CULTURAL EVENT.docxNikitaBankoti2
 
Microsoft Copilot AI for Everyone - created by AI
Microsoft Copilot AI for Everyone - created by AIMicrosoft Copilot AI for Everyone - created by AI
Microsoft Copilot AI for Everyone - created by AITatiana Gurgel
 
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024eCommerce Institute
 
George Lever - eCommerce Day Chile 2024
George Lever -  eCommerce Day Chile 2024George Lever -  eCommerce Day Chile 2024
George Lever - eCommerce Day Chile 2024eCommerce Institute
 
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night Enjoy
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night EnjoyCall Girl Number in Khar Mumbai📲 9892124323 💞 Full Night Enjoy
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night EnjoyPooja Nehwal
 
Air breathing and respiratory adaptations in diver animals
Air breathing and respiratory adaptations in diver animalsAir breathing and respiratory adaptations in diver animals
Air breathing and respiratory adaptations in diver animalsaqsarehman5055
 
Report Writing Webinar Training
Report Writing Webinar TrainingReport Writing Webinar Training
Report Writing Webinar TrainingKylaCullinane
 
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort ServiceDelhi Call girls
 
Mathematics of Finance Presentation.pptx
Mathematics of Finance Presentation.pptxMathematics of Finance Presentation.pptx
Mathematics of Finance Presentation.pptxMoumonDas2
 
Introduction to Prompt Engineering (Focusing on ChatGPT)
Introduction to Prompt Engineering (Focusing on ChatGPT)Introduction to Prompt Engineering (Focusing on ChatGPT)
Introduction to Prompt Engineering (Focusing on ChatGPT)Chameera Dedduwage
 
If this Giant Must Walk: A Manifesto for a New Nigeria
If this Giant Must Walk: A Manifesto for a New NigeriaIf this Giant Must Walk: A Manifesto for a New Nigeria
If this Giant Must Walk: A Manifesto for a New NigeriaKayode Fayemi
 
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...Sheetaleventcompany
 
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779Night 7k Call Girls Noida Sector 128 Call Me: 8448380779
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779Delhi Call girls
 
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara Services
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara ServicesVVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara Services
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara ServicesPooja Nehwal
 
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdf
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdfThe workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdf
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdfSenaatti-kiinteistöt
 
Presentation on Engagement in Book Clubs
Presentation on Engagement in Book ClubsPresentation on Engagement in Book Clubs
Presentation on Engagement in Book Clubssamaasim06
 
SaaStr Workshop Wednesday w/ Lucas Price, Yardstick
SaaStr Workshop Wednesday w/ Lucas Price, YardstickSaaStr Workshop Wednesday w/ Lucas Price, Yardstick
SaaStr Workshop Wednesday w/ Lucas Price, Yardsticksaastr
 
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptx
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptxMohammad_Alnahdi_Oral_Presentation_Assignment.pptx
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptxmohammadalnahdi22
 
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...Hasting Chen
 
Thirunelveli call girls Tamil escorts 7877702510
Thirunelveli call girls Tamil escorts 7877702510Thirunelveli call girls Tamil escorts 7877702510
Thirunelveli call girls Tamil escorts 7877702510Vipesco
 

Dernier (20)

ANCHORING SCRIPT FOR A CULTURAL EVENT.docx
ANCHORING SCRIPT FOR A CULTURAL EVENT.docxANCHORING SCRIPT FOR A CULTURAL EVENT.docx
ANCHORING SCRIPT FOR A CULTURAL EVENT.docx
 
Microsoft Copilot AI for Everyone - created by AI
Microsoft Copilot AI for Everyone - created by AIMicrosoft Copilot AI for Everyone - created by AI
Microsoft Copilot AI for Everyone - created by AI
 
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024
Andrés Ramírez Gossler, Facundo Schinnea - eCommerce Day Chile 2024
 
George Lever - eCommerce Day Chile 2024
George Lever -  eCommerce Day Chile 2024George Lever -  eCommerce Day Chile 2024
George Lever - eCommerce Day Chile 2024
 
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night Enjoy
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night EnjoyCall Girl Number in Khar Mumbai📲 9892124323 💞 Full Night Enjoy
Call Girl Number in Khar Mumbai📲 9892124323 💞 Full Night Enjoy
 
Air breathing and respiratory adaptations in diver animals
Air breathing and respiratory adaptations in diver animalsAir breathing and respiratory adaptations in diver animals
Air breathing and respiratory adaptations in diver animals
 
Report Writing Webinar Training
Report Writing Webinar TrainingReport Writing Webinar Training
Report Writing Webinar Training
 
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 97 Noida Escorts >༒8448380779 Escort Service
 
Mathematics of Finance Presentation.pptx
Mathematics of Finance Presentation.pptxMathematics of Finance Presentation.pptx
Mathematics of Finance Presentation.pptx
 
Introduction to Prompt Engineering (Focusing on ChatGPT)
Introduction to Prompt Engineering (Focusing on ChatGPT)Introduction to Prompt Engineering (Focusing on ChatGPT)
Introduction to Prompt Engineering (Focusing on ChatGPT)
 
If this Giant Must Walk: A Manifesto for a New Nigeria
If this Giant Must Walk: A Manifesto for a New NigeriaIf this Giant Must Walk: A Manifesto for a New Nigeria
If this Giant Must Walk: A Manifesto for a New Nigeria
 
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...
No Advance 8868886958 Chandigarh Call Girls , Indian Call Girls For Full Nigh...
 
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779Night 7k Call Girls Noida Sector 128 Call Me: 8448380779
Night 7k Call Girls Noida Sector 128 Call Me: 8448380779
 
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara Services
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara ServicesVVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara Services
VVIP Call Girls Nalasopara : 9892124323, Call Girls in Nalasopara Services
 
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdf
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdfThe workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdf
The workplace ecosystem of the future 24.4.2024 Fabritius_share ii.pdf
 
Presentation on Engagement in Book Clubs
Presentation on Engagement in Book ClubsPresentation on Engagement in Book Clubs
Presentation on Engagement in Book Clubs
 
SaaStr Workshop Wednesday w/ Lucas Price, Yardstick
SaaStr Workshop Wednesday w/ Lucas Price, YardstickSaaStr Workshop Wednesday w/ Lucas Price, Yardstick
SaaStr Workshop Wednesday w/ Lucas Price, Yardstick
 
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptx
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptxMohammad_Alnahdi_Oral_Presentation_Assignment.pptx
Mohammad_Alnahdi_Oral_Presentation_Assignment.pptx
 
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...
Re-membering the Bard: Revisiting The Compleat Wrks of Wllm Shkspr (Abridged)...
 
Thirunelveli call girls Tamil escorts 7877702510
Thirunelveli call girls Tamil escorts 7877702510Thirunelveli call girls Tamil escorts 7877702510
Thirunelveli call girls Tamil escorts 7877702510
 

How Social Certificates may help build Decentralized Trust - xuheg

  • 1. World e-Id and Cybersecurity Conference Sept. 17 2015 Laurent Henocque - KeeeX - Marseille How Social Certificates May Help Build Decentralized Trust
  • 2. The situation ‣ Trusted tiers cannot be trusted to protect our data, which may further be attacked on the air ‣ Certificate authorities may perform a loose job at ensuring who a an emitter is. ‣ Certificates are complex to obtain, expensive, have somehow missed their e-identity market ‣ Certificates expire, they are almost never revoked. Revoking is expensive. 2
  • 3. Certificate Pyramid / Chain in Short Trusted Authority Self Signed Root Certificate 'topaz' Private key digitally signs the public key of company certificate Private key digitally signs the hash ‘topaz’ Company Certificate Digitally signs the public key of user certificateThe file has proven integrity and certified author
  • 4. The two functions of a certificate can be distributed ‣ Decentralized, autonomous file integrity is possible (immune to attacks) ‣ Socially enforced certificates allow for a unique e-ID scheme 4
  • 5. Decentralized Integrity ‣ Solutions exist to embed file integrity in documents ‣ adobe pdf, microsoft office implement this ‣ KeeeX implements this for 250+ file formats ‣ When a file is obtained, it’s integrity can be checked offline, independently from a trusted tier 5
  • 6. Decentralized Authenticity ‣ The public key of a user needs not be digitally signed by a certificate hierarchy ‣ The public key of a user can be signed by other users! ‣ The signing private/public keypair of a user can be picked by the user himself ‣ The signing private/public keypair of a user can be replaced and revoked at anytime 6
  • 7. Your public key can be signed by someone who knows you! … ‘topaz’   +   public  Key   +   signature Private key digitally signs the hash ‘topaz’ Your public key can be stored inside the file! The file has proven integrity and certified author
  • 8. How do you create your own certificate? ‣ You create an ECC KeyPair, either randomly, or from a self defined passphrase ‣ The public key is very short (<40 chars) and easily fits within any file ‣ Then other people will certify your identity by ‣ digitally signing documents that refer to documents that you have signed yourself, or ‣ files that explicitly contain your public key 8
  • 9. For instance use Bitcoin Addresses ‣ Public key would be 1Gr8a8XKW…ERTDtya 9
  • 10. Signatures can be verified offline 10 ‣ Below is a valid signature of xirap-no…ox by my real public key: 16VjbG…SaBSA
  • 11. Conclusion ‣ Solutions exist to achieve the social (peer) certification of user defined e-identities ‣ It is cost effective ‣ It is under control ‣ It can be verified using publicly available tools 11
  • 12. 12 Thanks for listening Meet us at World Smart WeeeK Laurent Henocque, laurent@keeex.net, +33 683 88 20 01 KeeeX SAS, RCS Marseille 807 570 148 Pôle Média Belle de Mai CS 20038 – 37 Rue Guibal – 13356 Marseille cedex 03 Tel: +33 4 91 05 64 47