首页> 外文会议>International conference on internet computing >Replacement of Lost User Certificates for instant IS access
【24h】

Replacement of Lost User Certificates for instant IS access

机译:替换丢失的用户证书即可访问

获取原文

摘要

This paper focuses on a practical aspect of employing user certificates for strong authentication in web based systems. As soon as users are dependent on X.509-certificates to access important resources as e.g. corporate information systems there has to be a fast workflow for securely replacing previously issued certificates in the possible case of loss or theft. The ordinary way to issue certificates is too time consuming, since it takes too much time, including checks, to determine whether a person has the right to obtain a certificate and to make sure that he or she is the one who is allowed to get this certificate. If a valid certificate is lost or stolen, the primary task is revoking the old unusable certificate and certifying a new key pair. Therefore, we suggest a workflow involving two priviledged colleagues to certify the identity of a third employee who has no access to his or her certificate. This workflow is currently being implemented in one and under consideration for deployment in another large PKI-project in Europe.
机译:本文重点介绍在基于Web系统中使用用户证书进行强大身份验证的实际方面。一旦用户依赖于X.509 - 证书就可以访问重要资源,例如:公司信息系统必须在可能的损失或盗窃情况下安全地更换先前已发布的证书。发行证书的普通方式太耗了,因为需要太多时间,包括检查,以确定一个人是否有权获得证书并确保他或她是被允许达到的人证书。如果有效证书丢失或被盗,则主要任务正在撤消旧的不可用证书并证明新密钥对。因此,我们建议一个涉及两名特权同事的工作流程,以证明没有访问他或她的证书的第三员工的身份。此工作流程目前正在一次性地实施,并在欧洲另一个大型PKI-expect中进行部署。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号