DE60313530T2 - Authentifizierungs- und Berechtigungsinfrastruktursystem mit Benachrichtigungsfunktion für die Ausgabe von Zertifikatrücknahmelisten - Google Patents
Authentifizierungs- und Berechtigungsinfrastruktursystem mit Benachrichtigungsfunktion für die Ausgabe von Zertifikatrücknahmelisten Download PDFInfo
- Publication number
- DE60313530T2 DE60313530T2 DE60313530T DE60313530T DE60313530T2 DE 60313530 T2 DE60313530 T2 DE 60313530T2 DE 60313530 T DE60313530 T DE 60313530T DE 60313530 T DE60313530 T DE 60313530T DE 60313530 T2 DE60313530 T2 DE 60313530T2
- Authority
- DE
- Germany
- Prior art keywords
- certificate
- crl
- certification path
- certificate validation
- certification
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Lifetime
Links
- 238000013475 authorization Methods 0.000 title 1
- 238000010200 validation analysis Methods 0.000 claims description 208
- 230000005540 biological transmission Effects 0.000 claims description 13
- 238000012795 verification Methods 0.000 claims 1
- 230000006870 function Effects 0.000 description 80
- 238000007726 management method Methods 0.000 description 22
- 238000000034 method Methods 0.000 description 19
- 238000012546 transfer Methods 0.000 description 12
- 238000012545 processing Methods 0.000 description 10
- 238000010586 diagram Methods 0.000 description 5
- 238000004891 communication Methods 0.000 description 4
- 238000001514 detection method Methods 0.000 description 2
- 230000000977 initiatory effect Effects 0.000 description 2
- 101000759879 Homo sapiens Tetraspanin-10 Proteins 0.000 description 1
- 102100024990 Tetraspanin-10 Human genes 0.000 description 1
- 239000012141 concentrate Substances 0.000 description 1
- 238000010276 construction Methods 0.000 description 1
- 238000005516 engineering process Methods 0.000 description 1
- 239000000284 extract Substances 0.000 description 1
- 238000007689 inspection Methods 0.000 description 1
- 238000009434 installation Methods 0.000 description 1
- 238000012544 monitoring process Methods 0.000 description 1
- 230000001902 propagating effect Effects 0.000 description 1
- 238000012360 testing method Methods 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/006—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols involving public key infrastructure [PKI] trust models
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
- H04L9/3268—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
- Computer And Data Communications (AREA)
Applications Claiming Priority (4)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| JP2002170798 | 2002-06-12 | ||
| JP2002170798 | 2002-06-12 | ||
| JP2003128549 | 2003-05-07 | ||
| JP2003128549A JP4474845B2 (ja) | 2002-06-12 | 2003-05-07 | Crl発行通知機能付き認証基盤システム |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| DE60313530D1 DE60313530D1 (de) | 2007-06-14 |
| DE60313530T2 true DE60313530T2 (de) | 2007-12-27 |
Family
ID=29586050
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| DE60313530T Expired - Lifetime DE60313530T2 (de) | 2002-06-12 | 2003-06-10 | Authentifizierungs- und Berechtigungsinfrastruktursystem mit Benachrichtigungsfunktion für die Ausgabe von Zertifikatrücknahmelisten |
Country Status (7)
| Country | Link |
|---|---|
| US (1) | US7392380B2 (enExample) |
| EP (2) | EP1780938B1 (enExample) |
| JP (1) | JP4474845B2 (enExample) |
| CN (1) | CN1231862C (enExample) |
| DE (1) | DE60313530T2 (enExample) |
| SG (1) | SG103927A1 (enExample) |
| TW (1) | TW200410539A (enExample) |
Families Citing this family (27)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20050138388A1 (en) * | 2003-12-19 | 2005-06-23 | Robert Paganetti | System and method for managing cross-certificates copyright notice |
| EP1732261A4 (en) * | 2004-03-29 | 2008-02-13 | Matsushita Electric Industrial Co Ltd | INFORMATION DISTRIBUTION SYSTEM |
| CA2564904C (en) * | 2004-04-30 | 2011-11-15 | Research In Motion Limited | System and method for handling certificate revocation lists |
| US20060242406A1 (en) | 2005-04-22 | 2006-10-26 | Microsoft Corporation | Protected computing environment |
| JP4717378B2 (ja) * | 2004-06-08 | 2011-07-06 | キヤノン株式会社 | 情報処理装置 |
| US9436804B2 (en) | 2005-04-22 | 2016-09-06 | Microsoft Technology Licensing, Llc | Establishing a unique session key using a hardware functionality scan |
| US9363481B2 (en) | 2005-04-22 | 2016-06-07 | Microsoft Technology Licensing, Llc | Protected media pipeline |
| US7590841B2 (en) * | 2005-07-19 | 2009-09-15 | Microsoft Corporation | Automatic update of computer-readable components to support a trusted environment |
| US7650492B2 (en) * | 2005-07-19 | 2010-01-19 | Microsoft Corporation | Automatic update of computer-readable components to support a trusted environment |
| JP4917335B2 (ja) * | 2006-03-15 | 2012-04-18 | 株式会社リコー | 通信装置 |
| JP4501885B2 (ja) * | 2006-03-30 | 2010-07-14 | 村田機械株式会社 | 失効リスト取得機能付きサーバー装置。 |
| US8583917B2 (en) * | 2006-11-30 | 2013-11-12 | Red Hat, Inc. | Distribution of certification statements into repository |
| JP4594962B2 (ja) * | 2007-06-04 | 2010-12-08 | 株式会社日立製作所 | 検証サーバ、プログラム及び検証方法 |
| US8464045B2 (en) * | 2007-11-20 | 2013-06-11 | Ncr Corporation | Distributed digital certificate validation method and system |
| US8595484B2 (en) * | 2008-07-29 | 2013-11-26 | Motorola Solutions, Inc. | Method and device for distributing public key infrastructure (PKI) certificate path data |
| JP5329184B2 (ja) * | 2008-11-12 | 2013-10-30 | 株式会社日立製作所 | 公開鍵証明書の検証方法及び検証サーバ |
| US8255685B2 (en) * | 2009-03-17 | 2012-08-28 | Research In Motion Limited | System and method for validating certificate issuance notification messages |
| JP5131238B2 (ja) * | 2009-03-31 | 2013-01-30 | ブラザー工業株式会社 | 通信装置及びコンピュータプログラム |
| WO2013011874A1 (ja) * | 2011-07-15 | 2013-01-24 | 株式会社日立製作所 | 署名に用いる暗号アルゴリズムの決定方法、検証サーバおよびプログラム |
| TWI433558B (zh) * | 2011-12-05 | 2014-04-01 | Ind Tech Res Inst | 動態調整憑證撤銷清單更新頻率的方法及系統 |
| CN103401844B (zh) * | 2013-07-12 | 2016-09-14 | 天地融科技股份有限公司 | 操作请求的处理方法及系统 |
| US11244364B2 (en) | 2014-02-13 | 2022-02-08 | Apptio, Inc. | Unified modeling of technology towers |
| CN104811309B (zh) * | 2015-03-24 | 2018-07-17 | 天地融科技股份有限公司 | 一种远程使用智能密钥设备的方法及系统 |
| US9882727B1 (en) | 2015-10-02 | 2018-01-30 | Digicert, Inc. | Partitioning certificate revocation lists |
| JP2017152986A (ja) * | 2016-02-25 | 2017-08-31 | キヤノン株式会社 | 認証システム、画像形成装置とその制御方法、及びプログラム |
| JP6471112B2 (ja) | 2016-02-29 | 2019-02-13 | Kddi株式会社 | 通信システム、端末装置、通信方法、及びプログラム |
| TWI735332B (zh) * | 2020-09-08 | 2021-08-01 | 四零四科技股份有限公司 | 憑證轉移系統及憑證轉移方法 |
Family Cites Families (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US5699431A (en) | 1995-11-13 | 1997-12-16 | Northern Telecom Limited | Method for efficient management of certificate revocation lists and update information |
| US5745574A (en) * | 1995-12-15 | 1998-04-28 | Entegrity Solutions Corporation | Security infrastructure for electronic transactions |
| EP1000481A1 (en) * | 1997-05-09 | 2000-05-17 | Connotech Experts-Conseils Inc. | Initial secret key establishment including facilities for verification of identity |
| US6134550A (en) * | 1998-03-18 | 2000-10-17 | Entrust Technologies Limited | Method and apparatus for use in determining validity of a certificate in a communication system employing trusted paths |
| US6314517B1 (en) * | 1998-04-02 | 2001-11-06 | Entrust Technologies Limited | Method and system for notarizing digital signature data in a system employing cryptography based security |
| US6301658B1 (en) * | 1998-09-09 | 2001-10-09 | Secure Computing Corporation | Method and system for authenticating digital certificates issued by an authentication hierarchy |
| US7225164B1 (en) * | 2000-02-15 | 2007-05-29 | Sony Corporation | Method and apparatus for implementing revocation in broadcast networks |
| DE60122828T2 (de) * | 2000-06-09 | 2007-01-04 | Northrop Grumman Corp., Los Angeles | Vorrichtung und Verfahren zur Erzeugung eines Unterschriftszertifikats in einer Infrastruktur mit öffentlichen Schlüsseln |
| GB2366013B (en) * | 2000-08-17 | 2002-11-27 | Sun Microsystems Inc | Certificate validation mechanism |
| JP3588042B2 (ja) * | 2000-08-30 | 2004-11-10 | 株式会社日立製作所 | 証明書の有効性確認方法および装置 |
-
2003
- 2003-05-07 JP JP2003128549A patent/JP4474845B2/ja not_active Expired - Fee Related
- 2003-06-09 US US10/456,549 patent/US7392380B2/en not_active Expired - Fee Related
- 2003-06-09 TW TW092115568A patent/TW200410539A/zh not_active IP Right Cessation
- 2003-06-10 EP EP07002858A patent/EP1780938B1/en not_active Expired - Lifetime
- 2003-06-10 DE DE60313530T patent/DE60313530T2/de not_active Expired - Lifetime
- 2003-06-10 EP EP03013043A patent/EP1372293B1/en not_active Expired - Lifetime
- 2003-06-11 SG SG200303681A patent/SG103927A1/en unknown
- 2003-06-12 CN CNB031412963A patent/CN1231862C/zh not_active Expired - Fee Related
Also Published As
| Publication number | Publication date |
|---|---|
| US7392380B2 (en) | 2008-06-24 |
| EP1372293B1 (en) | 2007-05-02 |
| TWI300303B (enExample) | 2008-08-21 |
| EP1372293A3 (en) | 2004-05-06 |
| SG103927A1 (en) | 2004-05-26 |
| EP1780938A3 (en) | 2008-02-20 |
| JP2004072717A (ja) | 2004-03-04 |
| EP1372293A2 (en) | 2003-12-17 |
| US20040111609A1 (en) | 2004-06-10 |
| TW200410539A (en) | 2004-06-16 |
| EP1780938A2 (en) | 2007-05-02 |
| JP4474845B2 (ja) | 2010-06-09 |
| EP1780938B1 (en) | 2011-11-16 |
| CN1231862C (zh) | 2005-12-14 |
| CN1469274A (zh) | 2004-01-21 |
| DE60313530D1 (de) | 2007-06-14 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| DE60313530T2 (de) | Authentifizierungs- und Berechtigungsinfrastruktursystem mit Benachrichtigungsfunktion für die Ausgabe von Zertifikatrücknahmelisten | |
| DE60107634T2 (de) | Verfahren und Vorrichtung zur Authentifizierung der Gültigkeit eines Zertifikats | |
| DE602004012870T2 (de) | Verfahren und system zur benutzerauthentifizierung in einer benutzer-anbieterumgebung | |
| DE60314871T2 (de) | Verfahren zur authentifizierung eines anwenders bei einem zugang zu einem dienst eines diensteanbieters | |
| DE60315914T2 (de) | Ad hoc Sicherheitszugriff auf Dokumente und Dienste | |
| DE69832786T2 (de) | Vorrichtung und verfahren zur identifizierung von klienten die an netzwer-sites zugreifen | |
| EP2338255B1 (de) | Verfahren, computerprogrammprodukt und system zur authentifizierung eines benutzers eines telekommunikationsnetzwerkes | |
| DE60219431T2 (de) | Mobile zertifikatverteilung in einer infrastruktur mit öffentlichem schlüssel | |
| DE60320486T2 (de) | Systeme und Verfahren zur Lieferung von Anwendungen und zur Konfigurationsverwaltung für mobile Geräte | |
| DE60220959T2 (de) | Verfahren und Vorrichtung zur Bereitstellung einer Liste von öffentlichen Schlüsseln in einem Public-Key-System | |
| DE60308601T2 (de) | Verfahren und System zur Authentifizierung von Kommunikationsendgeräten | |
| DE60221113T3 (de) | Verfahren und system für die fernaktivierung und -verwaltung von personal security devices | |
| DE69816400T2 (de) | Verteiltes Objektsystem und Verfahren zum Anbieten von Dienstleistungen darin | |
| DE112017004033T5 (de) | Verfahren zum Erhalten von geprüften Zertifikaten durch Mikrodienste in elastischen Cloud-Umgebungen | |
| DE102008042262A1 (de) | Verfahren zur Speicherung von Daten, Computerprogrammprodukt, ID-Token und Computersystem | |
| DE102010028133A1 (de) | Verfahren zum Lesen eines Attributs aus einem ID-Token | |
| DE10204609A1 (de) | Computersystem eines Typs einer verteilten Umgebung, das aufeinanderfolgende Nachrichtenkommunikationen mit hoher Geschwindigkeit durch eine Dienstschicht erreichen kann | |
| DE112013006375T5 (de) | Authentifizierungsverarbeitungsvorrichtung, Authentifizierungsverarbeitungssystem, Authentifizierungsverarbeitungsverfahren und Authentifizierungsverarbeitungsprogramm | |
| DE112017007393T5 (de) | System und verfahren für netzwerkvorrichtungssicherheits- und vertrauenswertbestimmung | |
| DE102009001959A1 (de) | Verfahren zum Lesen von Attributen aus einem ID-Token über eine Mobilfunkverbindung | |
| WO2020143877A1 (de) | Verfahren zum sicheren bereitstellen einer personalisierten elektronischen identität auf einem endgerät | |
| DE60309216T2 (de) | Verfahren und vorrichtungen zur bereitstellung eines datenzugriffs | |
| DE102010041745A1 (de) | Verfahren zum Lesen eines RFID-Tokens, RFID-Karte und elektronisches Gerät | |
| DE112022005323T5 (de) | Verfahren, computer und programm zum ausstellen eines nft | |
| EP2454702A1 (de) | Verfahren zur hsm migration |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 8364 | No opposition during term of opposition |