摘要
在任何一个基于公钥基础设施的安全应用系统中,数字证书的验证对保证系统的安全具有至关重要的作用。简要描述了因特网中通过OCSP进行在线证书状态查询的方法,说明了目前加密手机无法像因特网一样进行在线数字证书状态查询的原因,提出了一种基于短消息的数字证书撤销状态发布方案,有效地解决了无线环境中的数字证书状态验证问题,提高了加密手机的安全水平。
In any security applications based PKI, the validation of the digital certificates is important to the system's security. This paper briefly describes the actual implementation of the On-line Certificate Status Protocol (OCSP) on Internet and explains why the crypto-mobile-phone cannot check the certificate status on-line as on Internet. It introduces a new certificate revocation status-broadcasting scheme that efficiently resolves the problem of checking certificate revocation status in wireless environment and improves the security level of crypto-mobile-phone.
出处
《计算机应用研究》
CSCD
北大核心
2006年第8期148-151,共4页
Application Research of Computers
关键词
公钥基础设施
证书状态发布
短消息
OCSP
Public Key Infrastructure
Certificate Status Broadcasting
Short Message : OCSP ( On-line Certificate Status Protocol)