首页> 外文会议>Annual PKI RD Workshop >The Directory-Enabled PKI Appliance: Digital Signatures Made Simple, Approach and Real World Experience
【24h】

The Directory-Enabled PKI Appliance: Digital Signatures Made Simple, Approach and Real World Experience

机译:启用目录的PKI设备:数字签名使得简单,方法和现实世界经验

获取原文

摘要

We present a novel approach for a PKI based digital signature system for documents in an enterprise setting. A centralized appliance securely stores users' private signing keys. The appliance interfaces with the existing enterprise directory to automatically provision users' keys and certificates. Users authenticate to the appliance using their existing directory credentials in order to access their signing keys. Client applications send document hash values to the appliance to be signed therefore the signing keys themselves never leave the appliance. Streamlined user interface methods enable easy acceptance by users, while streamlined management enables minimal ongoing investment by IT staff. Real world experience with the described system is presented and shows successful deployment in a variety of organizations and markets.
机译:我们为企业环境中的文档提供了一种基于PKI的数字签名系统的新方法。一个集中设备安全地存储用户的私人签名键。设备与现有企业目录接口以自动配置用户的密钥和证书。用户使用现有的目录凭据对设备进行身份验证,以便访问其签名密钥。客户端应用程序将文档哈希值发送到要签名的设备,因此签名键本身永远不会离开设备。简化的用户界面方法可以通过用户轻松接受,而简化的管理可以通过IT人员进行最小的持续投资。展示了与所描述的系统的真实世界经验,并在各种组织和市场中显示成功部署。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号