【24h】

Dividing PKI in Strongest Availability Zones

机译:将PKI分成最强大的可用性区域

获取原文

摘要

Key management involves two aspects: key distribution and key revocation. This paper presents the geographic server distributed model for key revocation which concerns about the security and performance of the system. The concept presented in this paper is more reliable, faster and scalable than the existing revocation techniques used in Public Key Infrastructure (PKI) framework in various countries, as it optimises key authentication in a network. It proposes auto-seeking of a geographically distributed certifying authority's key revocation server, which holds the revocation lists by the client, based on the best service availability. The network is divided itself into the strongest availability zones (SAZ), which automatically allows the new receiver to update the address of the authentication server and replace the old address with the new address of the SAZ, in case it moves to another location in the zone, or in case the server becomes unavailable in the same zone. Our scheme eases out the revocation mechanism and enables key revocation in the legacy systems.
机译:主要管理涉及两个方面:关键分布和关键撤销。本文介绍了对系统安全性和性能的关键撤销的地理服务器分布式模型。本文呈现的概念比各国的公钥基础设施(PKI)框架中使用的现有撤销技术更可靠,更快,更快,因为它优化了网络中的关键身份验证。它建议自动寻求地理上分布式的证书​​的钥匙撤销服务器,该服务器根据最佳服务可用性来保存客户端的撤销列表。网络被划分为最强大的可用性区域(SAZ),它自动允许新的接收器更新认证服务器的地址并用SAZ的新地址替换旧地址,以防它移动到另一个位置区域,或者如果服务器在同一区域中不可用。我们的计划可以简化撤销机制,并在遗留系统中启用关键撤销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号