信息安全与通信保密
信息安全與通信保密
신식안전여통신보밀
CHINA INFORMATION SECURITY
2011年
9期
72-73,77
,共3页
公钥密码技术%证书应用%代理%多证书支持
公鑰密碼技術%證書應用%代理%多證書支持
공약밀마기술%증서응용%대리%다증서지지
public key cryptography%certificate application%proxy%multi-certificate support
传统的公钥密码技术应用模式因为需要在客户端完成大量复杂的密码计算,导致难以在计算能力弱的环境中应用。数字证书由于在应用过程中要与认证机构通信,以取得证书撤销列表、证书链或在线验证证书的有效性,严重影响了公钥密码技术的应用与推广。文中提出的基于代理的公钥密码应用支持模型中,密码计算和通信通过代理服务完成,客户端仅需发送标准的公钥密码应用请求并接收响应,有效简化了公钥密码技术的应用。
傳統的公鑰密碼技術應用模式因為需要在客戶耑完成大量複雜的密碼計算,導緻難以在計算能力弱的環境中應用。數字證書由于在應用過程中要與認證機構通信,以取得證書撤銷列錶、證書鏈或在線驗證證書的有效性,嚴重影響瞭公鑰密碼技術的應用與推廣。文中提齣的基于代理的公鑰密碼應用支持模型中,密碼計算和通信通過代理服務完成,客戶耑僅需髮送標準的公鑰密碼應用請求併接收響應,有效簡化瞭公鑰密碼技術的應用。
전통적공약밀마기술응용모식인위수요재객호단완성대량복잡적밀마계산,도치난이재계산능력약적배경중응용。수자증서유우재응용과정중요여인증궤구통신,이취득증서철소렬표、증서련혹재선험증증서적유효성,엄중영향료공약밀마기술적응용여추엄。문중제출적기우대리적공약밀마응용지지모형중,밀마계산화통신통과대리복무완성,객호단부수발송표준적공약밀마응용청구병접수향응,유효간화료공약밀마기술적응용。
As considerable quantities of complex cryptographic computation should be done on client side in the traditional public key cryptosystems,it's difficult for the PKI technology to be used in the special case with weak computation capability. In addition,the communication between digital certificate and authentication is required,thus to obtain the CRLs as certificate chain and verify the validity of online certificate,this would greatly reduce the application and development of public key cryptographic technology. In the proposed proxy-based application model,the computation and communication are completed via the proxy service,and the client just needs to send standard application request and accept the corresponding response,thus effectively simplifying the application of public key cryptography.