ArtsAutosBooksBusinessEducationEntertainmentFamilyFashionFoodGamesGenderHealthHolidaysHomeHubPagesPersonal FinancePetsPoliticsReligionSportsTechnologyTravel

What is a Public-key Crypto System?

Updated on April 3, 2024

Cryptography is the science hiding, scrambling and/or rearranging information in a way that renders the data encrypted and unusable to all but those that have the key or nonce used to encrypt the data. Cryptography is used extensively in the Internet age to protect confidential information that is transported over public networks such as the Internet. There are many different types of cryptographic algorithms available and each has a place in the scheme of technology, security and usefulness.

Public key crypto systems, such as RSA 2048, are used to verify the sites you connect to on the Internet are who they claim to be, and not a malicious imposter.
Public key crypto systems, such as RSA 2048, are used to verify the sites you connect to on the Internet are who they claim to be, and not a malicious imposter.

Public-key crypto systems (also referred to as asymmetric key crypto systems) differ from other cryptographic systems in that two keys are used; one to encrypt data (referred to as a public key) and the other to decrypt the data (referred to as a private key). Public-key crypto systems differ from the more commonly known symmetric key crypto systems in that symmetric key crypto systems use a single key to encrypt and decrypt the same data. Symmetric key algorithms (or cryptography systems) are also generally much faster than public-key crypto systems.

However, public-key crypto systems include some features that are not available with the faster symmetric key crypto systems. First, because public-key crypto systems utilize two keys, a private and a public key, the crypto system can be used for non-repudiation and authentication. For example, the private key of a public-key crypto system set can be used to encrypt data or a portion of the data being sent or a string in the message and then decrypted only by the matching public-key. The fact that the message, or encrypted data string within the message, can be decrypted by the public-key is proof that the message was sent by the person that owns/possesses the private key. Second, public-key crypto systems can also be used to negotiate and establish encryption over a public network without having to share the same encryption key over the public network. Both parties can share their public keys with the other party then each party encrypts all messages sent with their private key and decrypt messages received using their own private key. Since the only individuals that possess the private keys are the same individuals to whom each key belongs, the encrypted exchange is secure. However, since public-key crypto systems are slow, this key exchange is usually followed by a negotiation which includes sharing a secret key for a symmetric key algorithm (encrypted by the public-key crypto system when the key is sent) so that the remainder of the conversation is protected by a symmetric key algorithm that is much faster and requires less computer resources than the public-key crypto system.

Symmetric crypto systems, such as AES 256, are much faster than asymmetric crypto systems but cannot be used for non-repudiation.
Symmetric crypto systems, such as AES 256, are much faster than asymmetric crypto systems but cannot be used for non-repudiation.

Public-key crypto systems must adhere to five requirements in order to be considered secure. First, it should be computationally easy for the sender to generate both public and private keys. Second, give the public key of the receiver; it should be computationally easy for the sender to encrypt the data using the receiver’s public key. Third, it should be computationally easy for the receiver to decrypt the data using their private key. Fourth, it should be computationally infeasible to find out the private key using the public key. Fifth, computationally infeasible to find out the cipher text (data that was encrypted with the public key) using the public key. There is however a sixth (implied) requirement which is that both the public key and the private key must be able to be used for both encryption and decryption.

Public-key crypto systems are a truly amazing mathematical invention. Without public-key crypto systems the world’s data would be much less secure.

© 2024 David Wilson

working

This website uses cookies

As a user in the EEA, your approval is needed on a few things. To provide a better website experience, hubpages.com uses cookies (and other similar technologies) and may collect, process, and share personal data. Please choose which areas of our service you consent to our doing so.

For more information on managing or withdrawing consents and how we handle data, visit our Privacy Policy at: https://corp.maven.io/privacy-policy

Show Details
Necessary
HubPages Device IDThis is used to identify particular browsers or devices when the access the service, and is used for security reasons.
LoginThis is necessary to sign in to the HubPages Service.
Google RecaptchaThis is used to prevent bots and spam. (Privacy Policy)
AkismetThis is used to detect comment spam. (Privacy Policy)
HubPages Google AnalyticsThis is used to provide data on traffic to our website, all personally identifyable data is anonymized. (Privacy Policy)
HubPages Traffic PixelThis is used to collect data on traffic to articles and other pages on our site. Unless you are signed in to a HubPages account, all personally identifiable information is anonymized.
Amazon Web ServicesThis is a cloud services platform that we used to host our service. (Privacy Policy)
CloudflareThis is a cloud CDN service that we use to efficiently deliver files required for our service to operate such as javascript, cascading style sheets, images, and videos. (Privacy Policy)
Google Hosted LibrariesJavascript software libraries such as jQuery are loaded at endpoints on the googleapis.com or gstatic.com domains, for performance and efficiency reasons. (Privacy Policy)
Features
Google Custom SearchThis is feature allows you to search the site. (Privacy Policy)
Google MapsSome articles have Google Maps embedded in them. (Privacy Policy)
Google ChartsThis is used to display charts and graphs on articles and the author center. (Privacy Policy)
Google AdSense Host APIThis service allows you to sign up for or associate a Google AdSense account with HubPages, so that you can earn money from ads on your articles. No data is shared unless you engage with this feature. (Privacy Policy)
Google YouTubeSome articles have YouTube videos embedded in them. (Privacy Policy)
VimeoSome articles have Vimeo videos embedded in them. (Privacy Policy)
PaypalThis is used for a registered author who enrolls in the HubPages Earnings program and requests to be paid via PayPal. No data is shared with Paypal unless you engage with this feature. (Privacy Policy)
Facebook LoginYou can use this to streamline signing up for, or signing in to your Hubpages account. No data is shared with Facebook unless you engage with this feature. (Privacy Policy)
MavenThis supports the Maven widget and search functionality. (Privacy Policy)
Marketing
Google AdSenseThis is an ad network. (Privacy Policy)
Google DoubleClickGoogle provides ad serving technology and runs an ad network. (Privacy Policy)
Index ExchangeThis is an ad network. (Privacy Policy)
SovrnThis is an ad network. (Privacy Policy)
Facebook AdsThis is an ad network. (Privacy Policy)
Amazon Unified Ad MarketplaceThis is an ad network. (Privacy Policy)
AppNexusThis is an ad network. (Privacy Policy)
OpenxThis is an ad network. (Privacy Policy)
Rubicon ProjectThis is an ad network. (Privacy Policy)
TripleLiftThis is an ad network. (Privacy Policy)
Say MediaWe partner with Say Media to deliver ad campaigns on our sites. (Privacy Policy)
Remarketing PixelsWe may use remarketing pixels from advertising networks such as Google AdWords, Bing Ads, and Facebook in order to advertise the HubPages Service to people that have visited our sites.
Conversion Tracking PixelsWe may use conversion tracking pixels from advertising networks such as Google AdWords, Bing Ads, and Facebook in order to identify when an advertisement has successfully resulted in the desired action, such as signing up for the HubPages Service or publishing an article on the HubPages Service.
Statistics
Author Google AnalyticsThis is used to provide traffic data and reports to the authors of articles on the HubPages Service. (Privacy Policy)
ComscoreComScore is a media measurement and analytics company providing marketing data and analytics to enterprises, media and advertising agencies, and publishers. Non-consent will result in ComScore only processing obfuscated personal data. (Privacy Policy)
Amazon Tracking PixelSome articles display amazon products as part of the Amazon Affiliate program, this pixel provides traffic statistics for those products (Privacy Policy)
ClickscoThis is a data management platform studying reader behavior (Privacy Policy)