16th Annual Computer Security Applications Conference (ACSAC'00) Personal security environment on Palm PDA New Orleans, Louisiana December 11-December 15 ISBN: 0-7695-0859-6
Digital signature schemes are based on the assumption that the signing key is kept in secret. Ensuring that this assumption holds is one of the most crucial problems for all current digital signature applications. This paper describes the solution developed and prototyped by the authors - using a mobile computing device with a smart-card reader for creating digital signatures. We give an overview of several common settings for digital signature applications and the problems they have, also describing several frameworks for mobile security applications. A discussion about the choice of devices, design issues, concrete solutions and their security concerns follows. We conclude that although nothing can prevent careless private key handling, careful management is easier and more convenient when using our solution.
Index Terms:
message authentication; mobile computing; notebook computers; microcomputer applications; personal computing; smart cards; personal security environment; Palm PDA; personal digital assistant; digital signature schemes; secret signing key; mobile computing device; smart-card reader; mobile security applications; device selection; design issues; private key handling
Citation:
M. Freundenthal, S. Heiberg, J. Willemson, "Personal security environment on Palm PDA," acsac, pp.366, 16th Annual Computer Security Applications Conference (ACSAC'00), 2000 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||