Trusted distribution of software over the Internet
The paper offers a solution to a problem of software distribution on the lnternet. The problem is that malicious software can be posted to the public with no accountability. When this software is run, it inherits the privileges of the user who runs it. Unfortunately, it is very common for users to execute software obtained on the Internet with no assurance that it is genuine. The solution offered here utilizes a trusted third party that signs certificates to identify the author of a program and to secure its integrity. A detailed design is provided. Finally, Bellcore's Trusted Software Integrity (Betsi) System, an implementation of the design, is presented.<<ETX>>
[1] Steven M. Bellovin,et al. Packets found on an internet , 1993, CCRV.
[2] Ronald L. Rivest,et al. The MD5 Message-Digest Algorithm , 1992, RFC.
[3] Bernard P. Zajac. Applied cryptography: Protocols, algorithms, and source code in C , 1994 .
[4] P. Gove. Webster's third new international dictionary of the English language, unabridged, with seven language dictionary , 1976 .