首页> 外文会议>NATO Advanced Networking Workshop on Advanced Security Technologies in Networking >Simplifying PKI Usage through a Client- Server Architecture and Dynamic Propagation of Certificate Paths and Repository Addresses1
【24h】

Simplifying PKI Usage through a Client- Server Architecture and Dynamic Propagation of Certificate Paths and Repository Addresses1

机译:通过客户端 - 服务器架构和证书路径的动态传播和存储库地址1简化PKI使用

获取原文

摘要

PKI deployment and use has not met its expectations. One reason that PKIX has not been fully accepted is due to the complexity of the system. Any application wishing to use PKI must implement complicated logic for certificate parsing, certificate path building and policy management. Certificate path building, in particular, is further complicated by the non-standardized method of certificate discovery and retrieval. Thus, many applications do not utilize or cannot utilize public key technology. We propose a new PKI Server which offers access to PKI services and only requires a simple Client API and a small Client library that enables even resource-limited clients to be supported. This can greatly reduce application development time and complexity and allow PKI usage to propagate into more applications. Furthermore, we introduce the concept of a PKI Server-to-Server Protocol which allows knowledge of certificate repositories and certificate paths to be shared among different PKI Servers. This technique will simplify the task of certificate retrieval and path building for individual PKI Servers.
机译:PKI部署和使用尚未达到其预期。 PKIX尚未完全被接受的一个原因是由于系统的复杂性。希望使用PKI的任何应用程序必须为证书解析,证书路径建设和策略管理实现复杂的逻辑。具体而言,证书路径建设因未标准化的证书发现和检索方法而进一步复杂化。因此,许多应用程序不利用或不能利用公钥技术。我们提出了一个新的PKI服务器,它提供对PKI服务的访问,并且只需要一个简单的客户端API和一个小客户端库,其甚至可以支持资源限制的客户端。这可以大大降低应用程序开发时间和复杂性,并允许PKI使用传播到更多应用程序中。此外,我们介绍了PKI服务器到服务器协议的概念,它允许在不同的PKI服务器之间共享证书存储库和证书路径。该技术将简化单个PKI服务器的证书检索和路径建筑物的任务。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号