摘要
在构筑和运作基于PKI的安全基础设施过程中,随着PKI应用领域的不断扩大,出现了多种为满足不同团体应用的信任模型,选择适当的信任模型是构筑PKI基础设施初级阶段的重要问题。结合实例,总结各种模型的各项性能指标,提出局部同构无根的信任模型(Identity authentication system based on theno Root CA and isomorphism,NRIS),并给出其实现方案。包括模型的域内实现,模型的域间实现,模型的认证服务。
Public Key Infrastructure is widely recognized now as being a fundamental technology on which several essential security services can be built . As some trust models have emerged as PKI have grown beyond local domains to satisfy needs of larger and more diverse communities, it is important to adopt a particular trust model at an early stage as this forms a basis for the PKI' s development. The capability guideline of each model is given based on the author's experience, and has given out an Identity authentication system based on the no Root CA and isomorphism. Moreover, Its construction strategy is given intruding the realization of the model,the construct of the model attestation serves and software structure.
出处
《计算技术与自动化》
2008年第2期141-144,共4页
Computing Technology and Automation
基金
湖南省科技计划项目(2006GK3068)