【24h】

TACAR: a Simple and Fast Way for Building Trust among PKIs

机译:TACAR:在PLU之间建立信任的简单快捷方法

获取原文
获取原文并翻译 | 示例

摘要

The idea of setting up an on-line repository hosting the academic trust anchors arose within the TERENA Task Force for Authentication and Authorisation Coordiantion for Em-ope (TF-AACE) and gained immediately a great consensus within the academic community. Over the last months of the 2003 the TF-AACE group (promoted by TERENA) has formalized the policy, established a pilot site and exercised the procedures by incorporating several academic PKIs into the repository. The policy reflects the fact that the community of identity providers in the academic and research environment is a small one, and therefore personal trust relationships were already in place. The range of potential participants include National Research and Educational Networks (NRENs), National Academic PKIs in the TERENA member countries, and non-for-profit research projects directly involving the academic community. The first time an applying PKI asks to join the TACAR a face-to-face meeting between TERENA's representative and PKI's is required, in order to establish a sort of personal trustiness. Due to the fact that the certificates collected by the TACAR can be used for several purposes, the policy does not define minimum requirements for applying CAs and does not evaluate their CP/CPS against these requirements, but only establish which CAs can join the TACAR. Each organization using the TACAR is responsible for deciding which trust links it will establish. The TACAR is intended as a trusted source to obtain PKI root certificates enabling independent validation of trust links among different infrastructures.
机译:建立一个托管学术信任锚的在线存储库的想法在TERENA Em-ope身份验证和授权协调工作组(TF-AACE)中产生,并立即在学术界获得了广泛共识。在2003年的最后几个月中,TF-AACE小组(由TERENA推动)正式制定了该政策,建立了一个试验站点,并通过将几个学术PKI合并到知识库中来执行了程序。该政策反映了一个事实,即学术和研究环境中的身份提供者社区很小,因此个人信任关系已经到位。潜在参与者的范围包括国家研究和教育网络(NREN),TERENA成员国中的国家学术PKI以及直接与学术界相关的非营利性研究项目。首次申请PKI要求加入TECAR的TERENA代表与PKI之间的面对面会议,以建立一种个人信任。由于TACAR收集的证书可以用于多种目的,因此该策略未定义应用CA的最低要求,也未根据这些要求评估其CP / CPS,而仅确定了哪些CA可以加入TACAR。每个使用TACAR的组织都有责任决定它将建立的信任链接。 TACAR旨在作为获得PKI根证书的受信任来源,从而能够独立验证不同基础结构之间的信任链接。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号