作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (2): 117-119.

• 安全技术 • 上一篇    下一篇

PKI和RBAC授权数字证书的设计与实现

高正宪,涂亚庆,李中学   

  1. (后勤工程学院后勤信息工程系,重庆 400016)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-01-20 发布日期:2008-01-20

Design and Implementation of PKI and RBAC-authorizedDigital Certificate

GAO Zheng-xian, TU Ya-qing, LI Zhong-xue   

  1. (Department of Logistics Information Engineering, Logistics Engineering University, Chongqing 400016)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-01-20 Published:2008-01-20

摘要: 设计并实现了授权证书(CA),扩展了数字证书的功能,利用ASN.1语法构造和编码证书授权扩展项,用RBAC中的访问控制信息为证书主体授权以实现证书对资源的访问控制。论述了该方式的优越性。该数字证书避免了传统方式的不安全因素。

关键词: 数字证书, 访问控制, 授权证书, ASN.1语法

Abstract: The design of certification authority establishment is completed successfully, and the functions of digital certificate are extended by means of building and encoding the authorized extensions items using ASN.1. Furthermore, the RBAC authorization information are appended to user’s certificate to control the owner’s access to objections. Some advantages of this mode are pointed out. The digital certificate avoids the insecure factor in traditional methods.

Key words: digital certificate, access control, certification authority(CA), ASN.1 grammer

中图分类号: