首页> 外文会议> >A new approach to the X.509 framework: allowing a global authentication infrastructure without a global trust model
【24h】

A new approach to the X.509 framework: allowing a global authentication infrastructure without a global trust model

机译:X.509框架的新方法:允许没有全局信任模型的全局身份验证基础结构

获取原文

摘要

Isolated network are currently being integrated in order to create a universal and virtual inter-network. In this context, the existence of a common authentication infrastructure is extremely important. CCITT Recommendation X.509 defines a public key-based "Authentication Framework" in which the Directory Service can be used to provide key management facilities for open applications. We propose a new approach to X.509 comprising a modular reorganization of the overall system and mechanisms allowing the realization of a global infrastructure for the deployment of authentication-based secure services. These mechanisms aim to complete the X.509 framework so as to rectify some open issues of the approach in order to allow the support of a multitude of trust models while respecting each security domain's certificates validation criteria. We first discuss aspects related to authentication data retrieval and validation with respect to X.509. Then we give an overview of the overall approach, and emphasize its more relevant aspects and mechanisms while describing the applicability of our approach with respect to security architectures and current trust models. Finally, we conclude the paper describing the applicability of our approach in a open and heterogeneous environment.
机译:当前正在集成隔离的网络,以创建通用的虚拟网络。在这种情况下,通用身份验证基础结构的存在非常重要。 CCITT X.509建议书定义了基于公用密钥的“身份验证框架”,其中目录服务可用于为开放应用程序提供密钥管理功能。我们为X.509提出了一种新方法,包括对整个系统和机制进行模块化重组,从而实现用于部署基于身份验证的安全服务的全局基础结构。这些机制旨在完善X.509框架,以便纠正该方法的一些未解决的问题,以便在支持每个信任域的同时尊重每个安全域的证书验证标准。我们首先讨论与针对X.509的身份验证数据检索和验证有关的方面。然后,我们对总体方法进行了概述,并在说明我们的方法在安全性体系结构和当前信任模型方面的适用性的同时,强调了其更相关的方面和机制。最后,我们得出结论,描述了我们的方法在开放和异构环境中的适用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号