Browse > Article
http://dx.doi.org/10.13089/JKIISC.2003.13.4.99

Design of International Cross Certification Model using Cross Certificate  

김재중 (한국정보인증 정보인증센터)
이동훈 (고려대학교 정보보호대학원)
Abstract
In this paper we propose an international cross certification model using cross certificate. We propose a new model by analyzing and solving current problems of the National PKI. We recommend a certificate profile, design a directory schema, and propose a method to access PSE(personal security environment) using PKCS#11, which gives the expansibility and convenience. Finally, we propose a certificate path verification method using RFC 3280 and show how to get the certificate chain by using the trust anchor. This model is recommended to the detailed level of specification for the interoperability of each country's PKI.
Keywords
PKI; Cross certification;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Internet X.509 Public Key Infrastructure Certificate and CRL Profile /
[ IETE ] / RFC 3280
2 Cryptographic Token Interface Standard /
[ RSA ] / PKCS#11(v2.2)
3 Personal Information Exchange Syntax Standard /
[ RSA ] / PKCS#12(v1.0)
4 전자서명 인증서 효력정지 및 폐지목폭 프로파일 표준 /
[ TTA ] / TTAS.KO-12.0013
5 lightweight Directory Access Protocol (v3) /
[ IETF ] / RFC 2251
6 Private Key Information Syntax Standard /
[ RSA ] / PKCS#8(v1.2)
7 전자서명 인증서 프로파일 표준 /
[ TTA ] / TTAS.KO-12.0012
8 RSA Cryptography Standard /
[ RSA ] / PKCS#1(v2.0)
9 Internet X.509 Public Key Infrastructure Certificate Management Protocols /
[ IETF ] / RFC 2510
10 Online Certificate Status Protocol /
[ IETF ] / RFC 2560
11 /
[ KISA ] / KCAC.UI, 공인인증기관간 상호연동을 위한 사용자 인터페이스 기술규격(v.1.00)
12 Cerficate Request Syntax Standard /
[ RSA ] / PKCS#10 (v1.7)
13 CA-CA Interoperability /
[ Steve Lioyd;David Fillingham;Steve Orlowski;John Weigelt ] / PKI Forum White Paper
14 Password-Based Crytogra-phy Standard /
[ RSA ] / PKCS#5(v2.0)
15 /
[ KISA ] / KCAC.CTL, 인증기관간 상호연동을 위한 기술규격(v.1,01)