It researches and discusses the certificate revocation list crl method, which is also used to query the certificate revoked status and compares the advantages and disadvantages of each other 对另一种同样用于查询证书撤销状态的证书撤销列表crl方法也进行了研究和探讨,并且比较了这两种方法各自的优势和劣势。
If you wish to use certificates for client authentication, you should be aware that websphere application server does not provide for certificate revocation list checking 如果您希望使用客户端身份验证证书,则应该注意websphereapplicationserver并不提供证书吊销列表(certificaterevocationlist,crl)检查。
First , we introduce some basic cryptography theories such as secret-key cryptography , public-key cryptography and hash algorithm . second , we give the concepts of x . 509 certificate, crl ( certificate revocation list ) and certification path, and following this, we give some examples of certificate and authentication architectures . finally, we present an example of implementation of the certificate and key management system and some application cases of this system 论文首先简单介绍了秘密密钥密码体制、公开密钥密码体制、hash函数以及基于x.509的公钥证书等基础密码学理论;其次,论文描述了几种典型的证书体系和鉴别机制;最后给出了一个电子政务证书管理系统的具体实现例子。
Online certif cate status protocol ( ocsp ) allows a client to query a responder for the status of one or more certificates and get up-to-date information on their validity . pki implementations can use ocsp instead of, or as a complement to, certificate revocation lists to overcome latency, scalability or manageability problems inherent in solutions based on crls 在线证书状态协议(ocsp)容许客户通过简单的查询获得实时的证书状态信息,目前在pki实现中,ocsp已经成为证书撤销列表(crl)的替代或补充机制,以克服基于crl机制的延时性、可扩展性差、难于管理等缺陷。
Updating the certificate revocation list ( crl ) by large amount of certificate users at the same time results in a performance bottleneck in pki systems . by addressing this problem, this paper introduces a p2p-based crl update scheme, which utilizes the resources on the crl users to improve crl update performance . analytical models are built to compare the p2p-based scheme with other schemes in digital campus applications 针对数字证书撤销列表更新中大量结点同时请求数据造成的系统性能瓶颈,本文提出了基于p2p的数字证书撤销列表更新方案,利用客户结点的资源改善证书撤销列表的更新性能;以数字校园应用为背景建立了分析模型,对所提方案进行了分析比较。