Browse > Article
http://dx.doi.org/10.13089/JKIISC.2003.13.1.59

Delegated Attribute Certificate Validation And Protocol  

이승훈 (LG전자/정보통신)
송주석 (연세대학교 컴퓨터과학과 정보통신 연구실)
Abstract
PMI(Privilege Management Infrastructure) certificates as well as Public-Key certificates must be validated before being used. Validation for a PMI certificate requires PMI certificate path validation, and PKC(Public-Key Certificate) path validations for each entity in the PMI certificate path. This validation work is quite complex and burdened to PMI certificate verifiers. Therefore, this paper suggests a delegated PMI certificate validation that uses specialized validation server, and defines a validation protocol which is used between validation server and client.
Keywords
PMI; AC; DPV; DPD;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 PMI: Privilege Management Infrastructure 개요 /
[ 강명희 ] / 퓨처시스템 Technical Report: FS-TR02-01
2 Internet X.509 Public Key Infrastructure Operational Protocols - LDAPv3 /
[ D. W. Chadwick ] / IETF PKIX Internet-Draft
3 Internet X.509 Public Key Infrastructure Certificate Management Protocols /
[ C. Adams;S. Farrell ] / IETF PKIX Internet-Draft
4 Internet X.509 Public Key Infrastructure Operational Protocols: Certificate Store Access via HTTP /
[ Peter Gutmann ] / IETF PKIX Internet-Draft
5 Attribute Certificate Policies Extension /
[ C. Francis;D. Pinkas ] / IETF PKIX Internet-Draft
6 Certificate Validation Protocol /
[ Denis Pinkas ] / IETF PKIX Internet-Draft
7 Attribute Certificate Management Messages over CMS /
[ P. Yee ] / IETF PKIX Internet-Draft
8 Internet X.509 Public Key Infrastructure LDAP Schema and Syntaxes for PKIs /
[ D. W. Chadwick;S. Legg ] / IETF PKIX Internet-Draft
9 Cerificate Management Messages over CMS /
[ M. Myers;X. Liu;J. Schaad;J. Weinstein ] / IETF PKIX RFC 2797
10 Public-Key And Attribute Certificate Frameworks /
[ ITU-T Recommendation X.509 ] / ISO/IEC 9594-8
11 An X.509 Role-based Privilege Management Infrastructure /
[ D. W. Chadwick ] / Business Briefing: Global Infosecurity
12 X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSP /
[ M. Myers;R. Ankney;A. Malpani;S. Galperin;C. Adams ] / IETF PKIX Internet-Draft
13 Internet X.509 Public Key Infrastructure LDAP Schema and Syntaxes for PMIs /
[ D. W. Chadwick;S. Legg ] / IETF PKIX Internet-Draft
14 Internet X.509 Public Key Infrastructure: Roadmap /
[ A. Arsenault;S. Turner ] / IETF PKIX Internet-Draft
15 Simple Certificate Validation Protocol /
[ A. Malpani;R. Housley;T. Freeman ] / IETF PKIX Internet-Draft
16 An Internet Attribute Certificate Profile for Authorization /
[ S. Farrell;R. Housley ] / IETF PKIX RFC 3281
17 Cryptographic Message Syntax(CMS) /
[ R. Housley ] / IETF PKIX RFC 3369
18 Delegated Path Validation and Delegated Path Discovery Protocol Requirements /
[ Denis Pinkas;Russ Housley ] / IETF PKIX Internet-Draft
19 Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List Profile /
[ R. Housley;W. Polk;W. Ford;D. Solo ] / IETF PKIX RFC 3280
20 TLS extensions for Attribute Certificate based authorization /
[ S. Farrell ] / IETF PKIX Internet-Draft