The IEEE Conference on Local Computer Networks 30th Anniversary (LCN'05)l 2005
DOI: 10.1109/lcn.2005.38
|View full text |Cite
|
Sign up to set email alerts
|

Client controlled security for Web applications

Abstract: The main contribution of this paper is an encryption system for web applications, where the encryption is done on the client side. By a web application we mean an application that uses a web browser as a user interface and the content is in HTML or equivalent.In our application the client creates and stores an encryption key. The data is always encrypted when in transit through the transport media, and cannot be decrypted on the server without an explicit consent of the client. Even a malicious server software… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1

Citation Types

0
4
0

Year Published

2010
2010
2017
2017

Publication Types

Select...
3
3
2

Relationship

0
8

Authors

Journals

citations
Cited by 10 publications
(4 citation statements)
references
References 7 publications
0
4
0
Order By: Relevance
“…The clients are implemented based on HTML and Java Script in order to run entirely in a web browser as a web application [12], while including all designated use-cases and functionalities stipulated by the Data Security Decree (DSD) to authenticate, set and get requests, encrypt and decrypt data, digital sign data and check digital signatures, as well as to gather and prepare needed statistics. The prototype satisfied all legislative requirements and showed the sustainability of the underlying concept.…”
Section: Prototyping Of the Dls And Its Clientsmentioning
confidence: 99%
“…The clients are implemented based on HTML and Java Script in order to run entirely in a web browser as a web application [12], while including all designated use-cases and functionalities stipulated by the Data Security Decree (DSD) to authenticate, set and get requests, encrypt and decrypt data, digital sign data and check digital signatures, as well as to gather and prepare needed statistics. The prototype satisfied all legislative requirements and showed the sustainability of the underlying concept.…”
Section: Prototyping Of the Dls And Its Clientsmentioning
confidence: 99%
“…Hassinen and Mussalo [15] have proposed a client-side encryption system to protect confidentiality, data integrity, and user trust. They encrypt data inputs using a client encryption key before submitting the content of an (X) HTML Form.…”
Section: Journal Of Theoretical and Applied Electronic Commerce Researchmentioning
confidence: 99%
“…If they are the same, the data is accepted, otherwise, the data is deemed to have been altered and the validation will fail. This system has two main requirements [15]:…”
Section: Journal Of Theoretical and Applied Electronic Commerce Researchmentioning
confidence: 99%
“…First, Hassinen and Mussalo [8] propose a client-side encryption system to protect data integrity and user trust. The client encryption key is located on a client smart card or can be stored on the server and transferred over an HTTP connection.…”
Section: Related Workmentioning
confidence: 99%