Journal of University of Chinese Academy of Sciences >
Temporary RSA Key and OCSP Server Implementation
Online published: 2005-01-15
OCSP Server is a key component of PKI .The response interval is influenced mainly by the server' s signature speed .In this article , an implementation of OCSP server is brought forward , which applies short-period , temporary RSA key to sign response message .In addition to satisfying security requirement , the speed of response is improved greatly
Lin Jingqiang , Feng Dengguo . Temporary RSA Key and OCSP Server Implementation[J]. Journal of University of Chinese Academy of Sciences, 2005 , 22(1) : 59 -63 . DOI: 10.7523/j.issn.2095-6134.2005.1.009
[1] Carlisle Adams , Steve Lloyd.Understanding public key infrastructure:concepts , standards , and deployment considerations .Macmil lan TechnicalPublishing , 1998
[2] Li X, Yang YX.The analysis and implementation of OCSP .Computer Applications , 2002 , 22(3):7—9 (in Chinese with English abstract)
[3] IETF Network Working group .RFC 2560 X 509 Internet Public Key Infrast ructure Online Certificate Status Protocol-OCSP .1999
[4] Feng DG , Pei DY.Cryptography tutorial .Beijing :S cience Press , 1999(in Chinese)
[5] RSA Laboratories .Has the RSA algori thm been compromi sed as a result of Bernstein' sPaper? 2002 .http : www .rsasecurity .com rsalabs technotesbernstein .html
[6] IETF Network Working Group .RFC 3280 Internet X 509 Public Key Infrastructure Cert if icate and Certifi cate Revocation List (CRL)profi le.2002
[7] RSA Laboratories .A cost-based security analysi s of symmet ric and asymmetric key lengths .2001 .http : www .rsasecurity.com rsalabs bulletinsbulletin13.html
附中文参考文献
[2] 李 新, 杨义先.OCSP 协议分析和实现.计算机应用, 2002, 22(3):7—9
[4] 冯登国, 裴定一.密码学导引.北京:科学出版社.1999
/
| 〈 |
|
〉 |