首页> 外文会议>International Conference for Internet Technology and Secured Transactions >An approach for evaluating trust in X.509 certificates
【24h】

An approach for evaluating trust in X.509 certificates

机译:评估X.509证书信任的方法

获取原文

摘要

Today, X.509 certificates is largely adopted for the identity verification of an entity. Such organizations and people use it to confirm their identities in online transaction. Then, it is necessary to verify the certificate trustworthiness in order to accept or reject it for a particular transaction. Besides, certificates are issued by the certificate authority based on the procedures which are described in a certificate policy. Any deficiency in these procedures may influence a certificate authority trustworthiness, which creates a trust lack in the certificates signed by this authority. In this context, relying parties need an automated mechanism to evaluate a trust level of certificate which come into question. In this paper, we grant them this mechanism to have information about its trustworthiness. In fact, we propose a trust framework architecture which is composed from the several components involved in the trust level calculation. Then, we suggest a trust level calculation algorithm which is based on three parameters that are the calculated CA trust level, the quality of procedures indicated in the certificate policy and the rating assigned to certification fields content. Our proposed solution allows relying parties to make a decision about certificate trustworthiness.
机译:今天,X.509证书主要用于实体的身份验证。这些组织和人员使用它来确认他们在线交易中的身份。然后,有必要验证证书可信度,以便接受或拒绝特定交易。此外,证书颁发机构根据证书策略中描述的程序发布。这些程序的任何缺乏可能会影响证书颁发机构可信度,这在该权威签署的证书中创造了信任。在这种情况下,依据各方需要自动机制来评估对问题的证书水平。在本文中,我们授予他们这种机制,以了解其可靠性的信息。实际上,我们提出了一种信任框架架构,该架构由涉及信任级别计算中涉及的多个组件组成。然后,我们建议一种信任级别计算算法,该算法基于三个参数,该参数是计算的CA信任级别,证书策略中所示的程序质量以及分配给认证字段内容的评级。我们拟议的解决方案允许依靠各方作出关于证书可信度的决定。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号