A CyberCIEGE scenario illustrating PKI interoperability issues through e-mail communications in a corporate environment

Loading...
Thumbnail Image
Authors
Ng, Teng Teng.
Subjects
Public Key Infrastructure (PKI)
X.509 Certificate
Certificate Revocation
Certificate Path Processing
CyberCIEGE
Computer security education
Advisors
Fulp, J.D.
Thompson, Mike
Date of Issue
2011-12
Date
December 2011
Publisher
Monterey, California. Naval Postgraduate School
Language
Abstract
To help educate computer/network users and administrators on the complexities and potential implementation pitfalls of PKI, the work outlined in this thesis extended the CyberCIEGE computer security simulation game with additional PKI-related functionality. The research developed a scenario definition file for the CyberCIEGE game engine that supports a new game scenario that illustrates PKI concepts (e.g., cross-certification, certificate path processing and certificate revocation), configuration choices, and the security implications thereof. The game engine was enhanced to realistically model the parameters of an actual X.509 digital certificate. Test cases designed for this game extension verified that the scenario reasonably portrayed realistic PKI deployment issues and provided feedback consistent with real-world PKI implementations.
Type
Thesis
Description
Department
Computer Science.
Organization
Naval Postgraduate School (U.S.)
Identifiers
NPS Report Number
Sponsors
Funder
Format
xviii, 70 p. : col. ill. ; 28 cm.
Citation
Distribution Statement
Approved for public release; distribution is unlimited.
Rights
This publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. Copyright protection is not available for this work in the United States.
Collections