欢迎来到淘文阁 - 分享文档赚钱的网站! | 帮助中心 好文档才是您的得力助手!
淘文阁 - 分享文档赚钱的网站
全部分类
  • 研究报告>
  • 管理文献>
  • 标准材料>
  • 技术资料>
  • 教育专区>
  • 应用文书>
  • 生活休闲>
  • 考试试题>
  • pptx模板>
  • 工商注册>
  • 期刊短文>
  • 图片设计>
  • ImageVerifierCode 换一换

    PKI培训海外(英文版).ppt

    • 资源ID:78662372       资源大小:1.80MB        全文页数:36页
    • 资源格式: PPT        下载积分:20金币
    快捷下载 游客一键下载
    会员登录下载
    微信登录下载
    三方登录下载: 微信开放平台登录   QQ登录  
    二维码
    微信扫一扫登录
    下载资源需要20金币
    邮箱/手机:
    温馨提示:
    快捷下载时,用户名和密码都是您填写的邮箱或者手机号,方便查询和重复下载(系统自动生成)。
    如填写123,账号就是123,密码也是123。
    支付方式: 支付宝    微信支付   
    验证码:   换一换

     
    账号:
    密码:
    验证码:   换一换
      忘记密码?
        
    友情提示
    2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
    3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
    4、本站资源下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。
    5、试题试卷类文档,如果标题没有明确说明有答案则都视为没有答案,请知晓。

    PKI培训海外(英文版).ppt

    1 1为了安全为了安全 总是握奇总是握奇2009年1月14日Security payment and trusted Security payment and trusted compute productions linecompute productions linePKI introduction2 2为了安全为了安全 总是握奇总是握奇ContentInformation Security BackgroundPKI FoundationA Whole PKI SystemStandards and reference3 3为了安全为了安全 总是握奇总是握奇the primary target of the information securityassure the sender is himselfdefend the document be readed/writed without the authenticationdefend the amend for document without the authenticationsender dont denied the documentsthe arbitration authority4 4为了安全为了安全 总是握奇总是握奇the essence and countermeasure of the security threatssecurity threatscountermeasuresLawlessly access system for operating documentsAccess control/operation controlWiretap the information or leakdocument encryptForgery transaction or deliver documentauthentication the documents sourcedocuments be sophisticated or deleteddocument integralitySender or receiver deny the documentsundeniable5 5为了安全为了安全 总是握奇总是握奇PKI(Public Key infrastructure)Public Key Infrastructure(PKI)Supply the solutions for the security of electronic world6 6为了安全为了安全 总是握奇总是握奇ContentInformation Security BackgroundPKI FoundationA Whole PKI SystemStandards and reference7 7为了安全为了安全 总是握奇总是握奇PKI?InfrastructureInfrastructure based on Public Key Supply security basic architecture by public key principle and technology8 8为了安全为了安全 总是握奇总是握奇symmetrical Key encrypt/decrypt processtwo parts use the same key9 9为了安全为了安全 总是握奇总是握奇problems about the symmetrical Key manage the keys and assure confidentiality are the important problems1010为了安全为了安全 总是握奇总是握奇public Key encrypt principlepublic Key encrypt(asymmetrical Key)a pair of keys(private Key and public key)instead of the symmetrical keysended information is encrypted by public key,receive part use the private key decrypt informationpublic key may spread freely private and public key do the digital signature and validate the signatureAssure the integrality and authentication sender1111为了安全为了安全 总是握奇总是握奇asymmetrical key encrypt processone public key and one private key 1212为了安全为了安全 总是握奇总是握奇compare about two encrypt typessymmetrical keyasymmetrical keykey countsSingle key A pair of keys(private and public Keys)statementKey must secrecyA public key and a private keymanagementsimple and difficulty for management need digital certification and trusted third partencrypt velocityquicklyslowlyapplicationmass data informationsmall data information1313为了安全为了安全 总是握奇总是握奇Digest arithmeticverify the information be not sophisticatedoutput result is computed by the digest arithmeticThe result have the same length,usually is 128 bits or 160 bits,now we have the 32*8 bits-different input,the same output-every bit does hashthe files with same hash results is impossibleAny change will have the different hash result1414为了安全为了安全 总是握奇总是握奇Digital Signature OperationDataMD5SHA1SHA2561515为了安全为了安全 总是握奇总是握奇Termssignatureprivate key encryptvalidate signaturepublic key decryptasymmetrical encryptpublic key encryptasymmetrical encrypt decryptprivate key decrypt1616为了安全为了安全 总是握奇总是握奇ContentInformation Security BackgroundPKI FoundationA Whole PKI SystemStandards and reference1717为了安全为了安全 总是握奇总是握奇Scenetwo people(parts)小明jack小华harryevent小明写信给小华jack write the information to harryKeys type1818为了安全为了安全 总是握奇总是握奇1919为了安全为了安全 总是握奇总是握奇2020为了安全为了安全 总是握奇总是握奇asymmetrical Key mechanical is enough?we also do these:information security policy-define the rule of key mechanical operationgenerate Key、store and managehow to generate the Key and digital certificate,how to issue and use.2121为了安全为了安全 总是握奇总是握奇The target of PKIconfidentialitytransaction information secrecyintegralitytransaction information integrityrealityidentity is reality and may be verifiedundeniabletransaction behavior is undeniable2222为了安全为了安全 总是握奇总是握奇Modules in the PKI System信息安全政策information security policy;注册管理中心(Registration Authority,RA)证书管理中心(Certificate Authority,CA);证书发布系统(Directory Service,DS)PKI应用系统PKI application system2323为了安全为了安全 总是握奇总是握奇Registration Authority,RARA is the middle interface between users and CA,it accept and authenticate the users documents and bring forward the application for certification.2424为了安全为了安全 总是握奇总是握奇CA(certificate Authority)CA is the basement of PKI systemThe digital certificate life cycle,CA include:Issue the digital certificate with users ID、Public Key、Digital certificateavailable data of certificateCA may abolish the certification according the CRL(Certificate revocation List)2525为了安全为了安全 总是握奇总是握奇about digital certificatecontents in certification:private informationCA informationPublic key of usersAvailable dataDigital signature for certification contents by CA 2626为了安全为了安全 总是握奇总是握奇X.509 Digital certificate format2727为了安全为了安全 总是握奇总是握奇Digital certificate sketch map2828为了安全为了安全 总是握奇总是握奇Digital certificate and ID CardName:Brian LiuSerial number:484865Issued by:ABC corp CAIssue date:1997 01 02Expiration date:1999 01 02Public key:38ighwejb38ighwejbDigital Signature:hwefdsafhwefdsaf2929为了安全为了安全 总是握奇总是握奇Digital certificate life cycle 3030为了安全为了安全 总是握奇总是握奇Certificate Issuehow to get the certificateRA or the application(smartcardusbkey)generate the public and private keysRA transfer a certificate request with public key to CA(RA validate the identity of user)CA issue the certificate to userapplication or smartcard or usbkey store the certificateCA release the certificate3131为了安全为了安全 总是握奇总是握奇Certification Authenticationverify the validity of certificate:小华取得小明的证书?application performance process get jacks certification and CAs root certificationcompute the hash of jacks certificate by CAs root public keyget the hash of jacks certificatecompare two hash datacheck out the time3232为了安全为了安全 总是握奇总是握奇Certificate issue systemCertificate can be issued by multiple styles under the PKI frameworkUser self or LDAP(目录服务)3333为了安全为了安全 总是握奇总是握奇PKI applicationsPKI applications include:communication between web service and browserE-mailElectronic Data Interchange,EDIonline taxonline bankVirtual Private Network,VPN3434为了安全为了安全 总是握奇总是握奇ContentInformation Security BackgroundPKI FoundationA Whole PKI SystemStandards and reference3535为了安全为了安全 总是握奇总是握奇Standards and reference for PKI1、Certificates X.509 v32、PKCS Public Key cryptographic standards3、CSP Cryptographic service providerhttp:/ 总是握奇总是握奇Thanks!

    注意事项

    本文(PKI培训海外(英文版).ppt)为本站会员(赵**)主动上传,淘文阁 - 分享文档赚钱的网站仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知淘文阁 - 分享文档赚钱的网站(点击联系客服),我们立即给予删除!

    温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。




    关于淘文阁 - 版权申诉 - 用户使用规则 - 积分规则 - 联系我们

    本站为文档C TO C交易模式,本站只提供存储空间、用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。本站仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知淘文阁网,我们立即给予删除!客服QQ:136780468 微信:18945177775 电话:18904686070

    工信部备案号:黑ICP备15003705号 © 2020-2023 www.taowenge.com 淘文阁 

    收起
    展开