节点文献

基于桥CA的高兼容性分布式信任模型

A Distributed Trust Model with High-Compatibility Based on Bridge CA

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 朱鹏飞戴英侠鲍旭华

【Author】 ZHU Peng-Fei+, DAI Ying-Xia, BAO Xu-Hua (State Key Laboratory of Information Security (Graduate School, The Chinese Academy of Sciences), Beijing 100049, China)

【机构】 信息安全国家重点实验室(中国科学院研究生院)信息安全国家重点实验室(中国科学院研究生院) 北京100049北京100049

【摘要】 基于PKI(public-keyinfrastructure)的分布式信任模型能够更好地保证分布式系统的安全性.作为信任路径的载体,数字证书格式的差异性可能对不同信任域实体之间的信任路径的可用性产生影响.提出了证书格式兼容性的概念,并以此为基础分析了证书格式差异对证书有效性验证的作用方式.在桥CA(certificateauthority)的基础上,提出一种兼容性较高的分布式结构的信任模型,能够消除证书格式兼容性问题对不同信任域实体之间实现互连的干扰.

【Abstract】 Distributed systems could be more secure with distributed trust model based on PKI (public-key infrastructure). The format of certificate may be different among different PKI systems. Those differences may disturb some applications performing verification of the certificate chain. In this paper, how those differences work during mutual verifications is analyzed with the new concept “certificate-format-compatibility”. Moreover, a new distributed trust model based on bridge CA (certificate authority) with high compatibility is designed out. Using this trust model, the mutual connections between entities in different trust domains would not be affected by the different certificate formats.

【基金】 国家自然科学基金;国家重点基础研究发展规划(973)~~
  • 【文献出处】 软件学报 ,Journal of Software , 编辑部邮箱 ,2006年08期
  • 【分类号】TP393.08
  • 【被引频次】19
  • 【下载频次】211
节点文献中: 

本文链接的文献网络图示:

本文的引文网络