节点文献

数字证书管理系统DCMS的研究与设计

The Research and Design of Digital Certificate Management System

【作者】 顾莉洁

【导师】 陆建德;

【作者基本信息】 苏州大学 , 计算机应用技术, 2003, 硕士

【摘要】 本文对基于X.509标准公钥基础设施(PKIX)下的数字证书管理系统(Digital Certificate Management System,下文简称DCMS)的设计与实现进行了分析和讨论。DCMS系统的设计涉及数字证书及证书撤消列表CRL的生成、发布、及数字证书的解码、分析、验证、导入导出与管理。论文探讨了DCMS系统中使用的LDAPv3目录服务技术,利用它完成对DCMS支持的认证中心生成的各种证书的颁布,对证书解码方案的原理和实现进行了深入的分析。考虑到系统的可扩充性,当用户环境规模增大时,可以使用多层次CA结构的模型,文章最后还对CA分布式信任模型所需的交叉认证设计方案进行了探讨,对DCMS的应用前景进行了阐述,并且对后期开发提出了进一步的设想。

【Abstract】 The paper has analyzed and discussed the design and implementation of the Digital Certificate Management System (DCMS) under the Public Key Infrastructure based on X.509 standard. The design of DCMS mainly deals with certificates generation and issuance, certificate’s coding and decoding methods, analysis and validation of digital certificates, as well as digital certificates import, export and management. The paper has discussed the technique of LDAP directory used in DCMS, with which the certificates, generated by the Certification Authority supported by DCMS, are published. The paper has also made a detailed analysis on the principle and implementation of certificate decoding. In the end, considering the extension of DCMS, the paper has also given a design scheme under the cross authentication architecture needed by CA distributed trust model, and has accounted for the application prospect of DCMS and given some suggestions for its further development in the future.

【关键词】 PKIXCALDAP目录服务DER
【Key words】 PKIXCALDAPDirectory ServiceDER
  • 【网络出版投稿人】 苏州大学
  • 【网络出版年期】2004年 02期
  • 【分类号】TP393.08
  • 【被引频次】1
  • 【下载频次】197
节点文献中: 

本文链接的文献网络图示:

本文的引文网络