JP2008067264A5 - - Google Patents

Download PDF

Info

Publication number
JP2008067264A5
JP2008067264A5 JP2006245226A JP2006245226A JP2008067264A5 JP 2008067264 A5 JP2008067264 A5 JP 2008067264A5 JP 2006245226 A JP2006245226 A JP 2006245226A JP 2006245226 A JP2006245226 A JP 2006245226A JP 2008067264 A5 JP2008067264 A5 JP 2008067264A5
Authority
JP
Japan
Prior art keywords
electronic
electronic certificate
certificate
processing
electronic processing
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
JP2006245226A
Other languages
Japanese (ja)
Other versions
JP2008067264A (en
JP4858027B2 (en
Filing date
Publication date
Application filed filed Critical
Priority to JP2006245226A priority Critical patent/JP4858027B2/en
Priority claimed from JP2006245226A external-priority patent/JP4858027B2/en
Publication of JP2008067264A publication Critical patent/JP2008067264A/en
Publication of JP2008067264A5 publication Critical patent/JP2008067264A5/ja
Application granted granted Critical
Publication of JP4858027B2 publication Critical patent/JP4858027B2/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Claims (4)

電子署名や暗号化通信の際の認証に用いられる電子証明書を発行するとともに失効した電子証明書の情報を記述した電子証明書失効リストを配布する認証局とネットワークを介して通信する通信手段と、前記認証局から発行された電子証明書を記憶する電子証明書保持手段と、前記電子証明書を用いた電子処理を実行する電子処理実行手段と、前記電子処理実行時に前記通信手段により前記認証局から電子証明書失効リストを取得して記憶するCRL保持手段と、第一の電子処理の後に行なわれる第二の電子処理時に取得した電子証明書失効リストによって前記第一の電子処理に用いられた電子証明書の有効性を検証する電子証明書有効性検証手段とを備えたことを特徴とする電子証明書管理装置。 A communication means for communicating via a network with a certificate authority that issues an electronic certificate used for authentication in electronic signature or encrypted communication and distributes an electronic certificate revocation list describing information of the revoked electronic certificate; , an electronic certificate storing means for storing the issued electronic certificate from the certificate authority, and electronic processing means for executing an electronic processing using the electronic certificate, said authentication by communication means when said electronic processing executed CRL holding means for acquiring and storing an electronic certificate revocation list from a station, and the electronic certificate revocation list acquired at the time of the second electronic processing performed after the first electronic processing are used for the first electronic processing. An electronic certificate management apparatus comprising: electronic certificate validity verification means for verifying the validity of the electronic certificate. 電子証明書を用いて電子処理を行った時刻である電子処理時刻とその電子証明書の識別情報と当該電子処理時に取得して記憶した電子証明書失効リストの識別情報とを電子処理毎に記憶する状態管理テーブルを有し、前記状態管理テーブルに前記第一の電子処理に用いられた電子証明書が記憶されていて、かつ、前記第一の電子処理に対応する電子証明書失効リストと前記第一の電子処理の電子処理時刻よりも後の時刻に行われた前記第二の電子処理に対応する電子証明書失効リストとが異なる場合に、前記電子証明書有効性検証手段は、前記第二の電子処理時に取得した電子証明書失効リストによって前記第一の電子処理に用いられた電子証明書の有効性を検証することを特徴とする請求項1記載の電子証明書管理装置 The electronic processing time that is the time when electronic processing was performed using the electronic certificate, the identification information of the electronic certificate, and the identification information of the electronic certificate revocation list acquired and stored at the time of the electronic processing are stored for each electronic processing. An electronic certificate revocation list corresponding to the first electronic processing, and the electronic certificate used for the first electronic processing is stored in the state management table. When the electronic certificate revocation list corresponding to the second electronic processing performed at a time later than the electronic processing time of the first electronic processing is different, the electronic certificate validity verification means 2. The electronic certificate management apparatus according to claim 1, wherein the validity of the electronic certificate used in the first electronic processing is verified by an electronic certificate revocation list acquired during the second electronic processing . 前記第一の電子処理に用いられた電子証明書が、当該電子証明書内に記される電子証明書の有効期限内であるとき、前記電子証明書有効性検証手段による有効性の検証を行なうことを特徴とする請求項1または請求項2記載の電子証明書管理装置 When the electronic certificate used in the first electronic processing is within the validity period of the electronic certificate recorded in the electronic certificate, the validity is verified by the electronic certificate validity verification unit. The electronic certificate management apparatus according to claim 1 or claim 2, wherein 前記電子証明書有効性検証手段は、前記第二の電子処理時に取得した電子証明書失効リストに前記第一の電子処理時に用いられた電子証明書の識別情報が記されているかどうかを判断し、記されていない場合に前記第一の電子処理時に用いられた電子証明書が有効であるとすることを特徴とする請求項1から請求項3のいずれかに記載の電子証明書管理装置 The electronic certificate validity verification means determines whether the identification information of the electronic certificate used at the time of the first electronic processing is written in the electronic certificate revocation list acquired at the time of the second electronic processing. The electronic certificate management apparatus according to any one of claims 1 to 3, wherein the electronic certificate used in the first electronic processing is valid when not described .
JP2006245226A 2006-09-11 2006-09-11 Electronic certificate management device Expired - Fee Related JP4858027B2 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
JP2006245226A JP4858027B2 (en) 2006-09-11 2006-09-11 Electronic certificate management device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
JP2006245226A JP4858027B2 (en) 2006-09-11 2006-09-11 Electronic certificate management device

Publications (3)

Publication Number Publication Date
JP2008067264A JP2008067264A (en) 2008-03-21
JP2008067264A5 true JP2008067264A5 (en) 2009-04-16
JP4858027B2 JP4858027B2 (en) 2012-01-18

Family

ID=39289524

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2006245226A Expired - Fee Related JP4858027B2 (en) 2006-09-11 2006-09-11 Electronic certificate management device

Country Status (1)

Country Link
JP (1) JP4858027B2 (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR101782971B1 (en) 2009-03-13 2017-09-28 김형운 Passport bank service and service server
JP6451965B2 (en) * 2015-03-18 2019-01-16 パナソニックIpマネジメント株式会社 Communication apparatus, counterpart communication apparatus, and communication program

Family Cites Families (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP3952121B2 (en) * 2000-07-03 2007-08-01 日本電信電話株式会社 Signature verification apparatus, signature verification method, and program recording medium
JP2002342516A (en) * 2001-05-18 2002-11-29 Nec System Technologies Ltd System, method, and program for certificate lapse list management
JP2003152715A (en) * 2001-11-16 2003-05-23 Nippon Telegr & Teleph Corp <Ntt> Certification revocation information acquisition method and device, certification revocation information acquisition program, and storage medium for storing the certification revocation information acquisition program
JP2005094365A (en) * 2003-09-17 2005-04-07 Hitachi Ltd Method for managing certificate pass and information processor
JP3894181B2 (en) * 2003-10-10 2007-03-14 株式会社日立製作所 Method and apparatus for speeding up public key certificate verification
JP2006074425A (en) * 2004-09-02 2006-03-16 Mitsubishi Electric Corp Public key certificate verification device, public key certificate verification method, and program

Similar Documents

Publication Publication Date Title
JP2006115502A5 (en)
CN104753881B (en) A kind of WebService safety certification access control method based on software digital certificate and timestamp
CN104735068B (en) Method based on the close SIP safety certification of state
WO2009079050A3 (en) Authentication with physical unclonable functions
JP2008517390A5 (en)
EP2456121A3 (en) Challenge response based enrollment of physical unclonable functions
JP2013122767A5 (en)
JP2019519987A (en) Block chain based identity authentication method, device, node and system
JP2019519987A5 (en)
RU2015133293A (en) METHOD FOR REMOVING BLOCKING AUTHORIZED AUTHORITIES AND AUTHENTICATION DEVICE
GB2521802A (en) Reissue of crypographic credentials
JP2010528537A5 (en)
JP2009526322A5 (en)
JP2013516685A5 (en)
ZA201004613B (en) Method and system for mobile devices credentialing
JP2006314137A5 (en)
WO2014138430A3 (en) Secure simple enrollment
GB201121411D0 (en) Improvements relating to iris cameras
RU2008117173A (en) IMPROVED DIGITAL RIGHTS MANAGEMENT SYSTEM (DRM)
TW200605592A (en) Distributed management of a certificate revocation list
GB2509278A (en) Network user identification and authentication
WO2008146667A1 (en) Anonymous authenticating system and anonymous authenticating method
WO2011106769A3 (en) Dynamic cryptographic subscriber-device identity binding for subscriber mobility
WO2008070330A3 (en) Apparatus and methods for authenticating voice and data devices on the same port
JP2012074011A5 (en)