The Public Key Infrastructure existed in critical infrastructure systems since the expansion of the World Wide Web, but to this day its limitations have not been completely solved. With the rise of government-driven digital identity in Europe, it is more important than ever to understand how PKI can be an efficient frame for eID and to learn from mistakes encountered by other countries in such critical systems. This survey aims to analyze the literature on the problems and risks that PKI exhibits, establish a brief timeline of its evolution in the last decades and study how it was implemented in digital identity projects.
翻译:公钥基础设施自万维网扩展以来便存在于关键基础设施系统中,但至今其局限性仍未完全解决。随着欧洲政府驱动的数字身份体系兴起,理解PKI如何成为eID的有效框架,并从其他国家在关键系统中遭遇的失误中汲取经验变得比以往更为重要。本综述旨在分析有关PKI所表现的问题与风险的文献,梳理其近几十年发展的简要时间线,并研究其在数字身份项目中的实施方式。