public key infrastructure ammar hasayen 2013. …

20
Public Key Infrastructure Ammar Hasayen 2013

Upload: kelly-dixon

Post on 24-Dec-2015

225 views

Category:

Documents


1 download

TRANSCRIPT

Page 1: Public Key Infrastructure Ammar Hasayen 2013. …

Public Key InfrastructureAmmar Hasayen2013

Page 2: Public Key Infrastructure Ammar Hasayen 2013. …

Going back in time

….

Page 3: Public Key Infrastructure Ammar Hasayen 2013. …

How things worked before

Face to Face

Corporate walls Badges Paper

work

TrustConfidentiality

Authenticity Delivery

Page 4: Public Key Infrastructure Ammar Hasayen 2013. …

How things working Now

Virtual Team

World is the limit Digital ID

Digital Collaboratio

n

WirelessAnywhere BYOD E-transactions

Page 5: Public Key Infrastructure Ammar Hasayen 2013. …

Defining Challenges

Within Corporate

Active Directory

Weak Identity

Can be shared

C.I.AInternet is like a big city

You can be anyone

How to identify people

digitally?

Page 6: Public Key Infrastructure Ammar Hasayen 2013. …

Introducing PKI

….

Page 7: Public Key Infrastructure Ammar Hasayen 2013. …

Public Key Infrastructure

Framework

PeoplePolicies

SoftwareHardwareProcesses

Public Key Technology

AuthenticityNon-Repudiation Confidentiality Integrity

Public Key Infrastructure is a framework consist of hardware, software, people, processes, and policies, that together helps identify and solve these problems for you by establishing safe and reliable environment for electronic transactions in the internet

Page 8: Public Key Infrastructure Ammar Hasayen 2013. …

Digital Certificate

Certificate Authority

Digital Certificate

A certificate authority maintains a revocation list that contains all digital certificates cancelled or suspended before their expiry dates.

Page 9: Public Key Infrastructure Ammar Hasayen 2013. …

Digital Certificate

Public Key

Private KeyDigital

Certificate

Page 10: Public Key Infrastructure Ammar Hasayen 2013. …

Secure Email

Encrypt with Public

Key

Decrypt with

Private Key

Page 11: Public Key Infrastructure Ammar Hasayen 2013. …

Why PKI

….

Page 12: Public Key Infrastructure Ammar Hasayen 2013. …

Starts at 1024 bit key length

Asymmetric cryptography

Users, Computers, Devices, Portals

Authenticity, Integrity, Confidentiality

Non Repudiation (Proof)

Page 13: Public Key Infrastructure Ammar Hasayen 2013. …

Can be hosted in Smart Cards

Extend trust beyond Corp boundaries

Secure Technology Enabler

Compliance

Technology Neutral

Page 14: Public Key Infrastructure Ammar Hasayen 2013. …

PKI Technologies

….

Page 15: Public Key Infrastructure Ammar Hasayen 2013. …

Public Key Infrastructure

SSL Certificates

Wireless Security

PEAP –EAP-TLS

Secure VPNAccess

Secure Email S/MIME

Encrypt FilesEFS

Smart CardsTwo-factor

Authentication

Page 16: Public Key Infrastructure Ammar Hasayen 2013. …

Public Key Infrastructure is Enabler For Every Security Solution

Page 17: Public Key Infrastructure Ammar Hasayen 2013. …

PKI Deployment

….

Page 18: Public Key Infrastructure Ammar Hasayen 2013. …

Implement CA Servers

Design PKI InfrastructureConfiguration (CRLS,AIA)

Policies (CPS, CS) Secure PKI and defining roles

Defining EnrolleesUsers Computers Services Devices

Introducing PKI TechnologiesSSL TLS S/MIME EFS

Smart Cards Secure VPN NAP 802.1X

PHASE1

PHASE2

PHASE3

Page 19: Public Key Infrastructure Ammar Hasayen 2013. …

It is either your infrastructure that determines your service

levelOR

your service level determines your infrastructure

Page 20: Public Key Infrastructure Ammar Hasayen 2013. …

Thank You