摘要
无线PKI技术在移动电子商务中扮演着重要角色,而证书状态查询机制是其关键部件。对无线PKI中的3种常见的证书状态查询机制进行了分析和比较;OCSP协议能够提供实时的证书状态查询服务,但由于无线PKI的特殊限制,并不能直接应用于无线PKI环境中。在充分考虑无线PKI特殊的限制条件基础上,给出了一种基于OCSP协议的适合无线PKI环境的证书状态查询设计方案;详细描述了该设计在具体实现中需要特别注意的几项关键技术,以提高系统的性能和安全性。
WPKI plays an important role in mobile e-commerce, and the certificate retraction technology is its key component. The three common certificate retraction technologies in WPKI are analyzed and compared; the OCSP protocol can provide the real time service for certificate retraction, however, it is not suitable to be applied in WPKI immediately for the special restriction ofWPKI. A design based on the OCSP protocol is provided, which is custom-built for the WPKI; several key technologies in its implementation are also described in detail to improve the efficiency and security of the system.
出处
《计算机工程与设计》
CSCD
北大核心
2006年第20期3771-3773,3782,共4页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2001AA141120)