Advanced search
Start date
Betweenand


Next-Generation SPIFFE/SPIRE Identity Management Systems with Post-Quantum Cryptography Algorithms

Full text
Author(s):
Cardoso, Lucas C. ; Marques, Marco A. ; Barcha Correia, Pedro H. ; Cochak, Henrique Z. ; Miers, Charles C. ; Simplicio, Marcos A., Jr.
Total Authors: 6
Document type: Journal article
Source: 2025 IEEE 25TH INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING, CCGRID; v. N/A, p. 10-pg., 2025-01-01.
Abstract

Quantum transition reached a new level of importance since NIST standardized post-quantum cryptographic algorithms in late 2024. Consequently, several studies addressed the required changes in existing technologies and systems embracing post-quantum algorithms to face an imminent quantum threat. Cloud-based environments are no different, especially when assuring correct authentication and authorization. We address the usage of post-quantum primitives embedded in identity-management systems, a crucial entity inside distributed systems. Our proposal is based on SPIFFE / SPIRE, an open-source framework for secure identity production, integrating post-quantum and classical primitives in a hybrid manner. Moreover, we discuss using X.509 certificates as part of our infrastructure and their performance, combining different digital signature algorithms. (AU)

FAPESP's process: 20/09850-0 - Applied Artificial Intelligence Research Center: accelerating the evolution of industries toward standard 5.0
Grantee:Jefferson de Oliveira Gomes
Support Opportunities: Research Grants - Applied Research Centers Program