CN112513840B - 可缩放证书管理系统架构 - Google Patents

可缩放证书管理系统架构 Download PDF

Info

Publication number
CN112513840B
CN112513840B CN201980045450.3A CN201980045450A CN112513840B CN 112513840 B CN112513840 B CN 112513840B CN 201980045450 A CN201980045450 A CN 201980045450A CN 112513840 B CN112513840 B CN 112513840B
Authority
CN
China
Prior art keywords
certificate
application
authority
authority application
registration
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201980045450.3A
Other languages
English (en)
Chinese (zh)
Other versions
CN112513840A (zh
Inventor
艾伦·T·迈耶
格雷戈里·A·鲍威尔
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Integrity Security Services Ltd
Original Assignee
Integrity Security Services Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from US16/029,559 external-priority patent/US10581620B2/en
Application filed by Integrity Security Services Ltd filed Critical Integrity Security Services Ltd
Priority to CN202510017110.7A priority Critical patent/CN119814456A/zh
Publication of CN112513840A publication Critical patent/CN112513840A/zh
Application granted granted Critical
Publication of CN112513840B publication Critical patent/CN112513840B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/44Program or device authentication
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0407Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden
    • H04L63/0414Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden during transmission, i.e. party's identity is protected against eavesdropping, e.g. by using temporary identifiers, but is known to the other party or parties involved in the communication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • H04L63/062Network architectures or network communication protocols for network security for supporting key management in a packet data network for key distribution, e.g. centrally by trusted party
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0823Network architectures or network communication protocols for network security for authentication of entities using certificates
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
    • H04L9/3268Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2129Authenticate client device independently of the user
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/42Anonymization, e.g. involving pseudonyms

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computing Systems (AREA)
  • Software Systems (AREA)
  • General Physics & Mathematics (AREA)
  • Physics & Mathematics (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
  • Storage Device Security (AREA)
CN201980045450.3A 2018-07-07 2019-07-01 可缩放证书管理系统架构 Active CN112513840B (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202510017110.7A CN119814456A (zh) 2018-07-07 2019-07-01 可缩放证书管理系统、方法及非暂时性计算机可读介质

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US16/029,559 US10581620B2 (en) 2016-11-14 2018-07-07 Scalable certificate management system architectures
US16/029,559 2018-07-07
PCT/US2019/040064 WO2020014024A1 (en) 2018-07-07 2019-07-01 Scalable certificate management system architectures

Related Child Applications (1)

Application Number Title Priority Date Filing Date
CN202510017110.7A Division CN119814456A (zh) 2018-07-07 2019-07-01 可缩放证书管理系统、方法及非暂时性计算机可读介质

Publications (2)

Publication Number Publication Date
CN112513840A CN112513840A (zh) 2021-03-16
CN112513840B true CN112513840B (zh) 2025-01-24

Family

ID=69142492

Family Applications (2)

Application Number Title Priority Date Filing Date
CN201980045450.3A Active CN112513840B (zh) 2018-07-07 2019-07-01 可缩放证书管理系统架构
CN202510017110.7A Pending CN119814456A (zh) 2018-07-07 2019-07-01 可缩放证书管理系统、方法及非暂时性计算机可读介质

Family Applications After (1)

Application Number Title Priority Date Filing Date
CN202510017110.7A Pending CN119814456A (zh) 2018-07-07 2019-07-01 可缩放证书管理系统、方法及非暂时性计算机可读介质

Country Status (6)

Country Link
EP (1) EP3818457B1 (https=)
JP (3) JP7297861B2 (https=)
KR (2) KR102766157B1 (https=)
CN (2) CN112513840B (https=)
AU (2) AU2019300777B2 (https=)
WO (1) WO2020014024A1 (https=)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN119814456A (zh) * 2018-07-07 2025-04-11 诚信安全服务有限公司 可缩放证书管理系统、方法及非暂时性计算机可读介质

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FR3105703A1 (fr) * 2019-12-20 2021-06-25 Orange Technique d’administration d’un profil d’accès à un réseau de communication
US12250326B2 (en) 2022-08-26 2025-03-11 Motorola Solutions, Inc. Certificate entitlement licenses for authenticating public key infrastructure certificate enrollment
DE102023119507A1 (de) * 2023-07-24 2025-01-30 Krone Agriculture Se Verfahren zur Datenbehandlung betreffend eine Landmaschine
US20260010614A1 (en) * 2024-07-05 2026-01-08 Integrity Security Services Llc Offline digital asset generation and provisioning

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110326252A (zh) * 2016-11-14 2019-10-11 诚信保安服务有限责任公司 设备的安全供应和管理

Family Cites Families (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7426750B2 (en) * 2000-02-18 2008-09-16 Verimatrix, Inc. Network-based content distribution system
US20020071563A1 (en) * 2000-12-12 2002-06-13 Kurn David Michael Method and apparatus for cryptographic key rollover during operation
US7328344B2 (en) * 2001-09-28 2008-02-05 Imagitas, Inc. Authority-neutral certification for multiple-authority PKI environments
JP4252620B1 (ja) * 2008-08-27 2009-04-08 グローバルサイン株式会社 サーバ証明書発行システム
CN101873301B (zh) * 2009-04-22 2015-10-21 索尼株式会社 匿名注册系统以及方法
US8627063B2 (en) 2009-12-23 2014-01-07 Citrix Systems, Inc. Systems and methods for flash crowd control and batching OCSP requests via online certificate status protocol
EP2715601A1 (en) * 2011-06-01 2014-04-09 Security First Corp. Systems and methods for secure distributed storage
CN102333111A (zh) * 2011-07-21 2012-01-25 上海互联网软件有限公司 一种基于云计算的电子政务服务系统
US20130339740A1 (en) * 2012-03-08 2013-12-19 Omer Ben-Shalom Multi-factor certificate authority
US20140280595A1 (en) * 2013-03-15 2014-09-18 Polycom, Inc. Cloud Based Elastic Load Allocation for Multi-media Conferencing
US10069903B2 (en) 2013-04-16 2018-09-04 Amazon Technologies, Inc. Distributed load balancer
CN103501229B (zh) * 2013-09-27 2017-02-01 武钢集团昆明钢铁股份有限公司 一种基于供应链管理的电子商务平台安全认证系统进行安全认证的方法
WO2016118979A2 (en) * 2015-01-23 2016-07-28 C3, Inc. Systems, methods, and devices for an enterprise internet-of-things application development platform
US10484351B2 (en) * 2016-01-28 2019-11-19 Etas Embedded Systems Canada Inc. System and method for certificate selection in vehicle-to-vehicle applications to enhance privacy
US10826905B2 (en) * 2016-12-05 2020-11-03 Citrix Systems, Inc. Secure access to on-premises web services from multi-tenant cloud services
CN107749836B (zh) * 2017-09-15 2020-07-31 江苏大学 面向用户隐私保护与数据可靠性的移动感知系统及其移动感知方法
KR102766157B1 (ko) * 2018-07-07 2025-02-10 인테그리티 시큐리티 서비시즈 엘엘씨 확장 가능한 인증서 관리 시스템 구축물

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110326252A (zh) * 2016-11-14 2019-10-11 诚信保安服务有限责任公司 设备的安全供应和管理

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN119814456A (zh) * 2018-07-07 2025-04-11 诚信安全服务有限公司 可缩放证书管理系统、方法及非暂时性计算机可读介质

Also Published As

Publication number Publication date
AU2019300777B2 (en) 2024-08-22
KR20250022904A (ko) 2025-02-17
CN112513840A (zh) 2021-03-16
EP3818457A4 (en) 2022-03-30
EP3818457B1 (en) 2026-04-22
EP3818457A1 (en) 2021-05-12
KR20210028637A (ko) 2021-03-12
AU2024259790A1 (en) 2024-11-28
CN119814456A (zh) 2025-04-11
JP2021530169A (ja) 2021-11-04
WO2020014024A1 (en) 2020-01-16
JP2023120287A (ja) 2023-08-29
JP7297861B2 (ja) 2023-06-26
JP2025094191A (ja) 2025-06-24
AU2019300777A1 (en) 2021-01-07
KR102766157B1 (ko) 2025-02-10

Similar Documents

Publication Publication Date Title
US11997220B2 (en) Scalable certificate management system architectures
JP7714743B2 (ja) 機器の安全なプロビジョニングと管理
CN112513840B (zh) 可缩放证书管理系统架构
HK40015934A (en) Secure provisioning and management of devices
HK40015934B (en) Secure provisioning and management of devices

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant