Revocation in this case must be based on the cryptographic fingerprint of the certificate, and the mechanism that provides this functionality is a certificate revocation list (CRL).
在此情况下,撤销必须基于该证书的加密指纹,而提供此功能的机制就是证书撤销列表(CRL)。
With a trust store consisting of a single trusted ca and nothing more, the CRL approaches an equivalent per-DN revocation capability in which revocation of the certificate effectively revokes access.
使用除包含单个受信任存储CA之外没有其他任何内容的信任存储区,CRL提供一个等效的每DN撤销功能,撤销证书将有效撤销访问权。
For certificate revocation to work properly, the receiver of the certificate must check to see if it is still valid.
为了让证书撤消起作用,证书的接受者必须检查它是否仍然有效。
The use of a certificate revocation list is mandatory when using CA issued certificates.
在使用CA颁发的证书时强制使用证书撤销列表。
The proposed scheme has the advantages of secure private key storage, immediate certificate revocation and distributed trust management.
本方案具有分布式的私钥安全保存,及时的证书撤销和分布式信任管理等优点。
The proposed certificate revocation schemes restrict algorithm performance because they fail to consider the differences between the probabilities of inquiring certificate.
在目前已经提出的证书废除机制中,由于未考虑证书查询概率之间的差异,限制了算法的性能。
Finally we discuss the mechanisms of certificate revocation and freshness.
最后讨论证书撤销和更新的机制。
Certificate revocation is always a hard problem in the research and application of public key infrastructure (PKI).
证书撤销一直是公钥基础设施(PK i)研究和应用中的一个难点问题。
It researches and discusses the certificate Revocation List CRL method, which is also used to query the certificate revoked status and compares the advantages and disadvantages of each other.
对另一种同样用于查询证书撤销状态的证书撤销列表CRL方法也进行了研究和探讨,并且比较了这两种方法各自的优势和劣势。
Digital certificate status validation system is a necessary part of PKI, which is used to provide certificate revocation information for certificate relier in PKI applications.
数字证书状态验证系统是PKI的一个不可或缺的组成部分,用于在PK I应用中为数字证书依赖者提供相关证书的撤销信息。
Because the DBS cannot meet the requirement of PKI, we use the Directory Service technology to implement the administration of Certificate and Certificate Revocation List for PKI system.
由于分布式数据库系统不能满足PK I安全体系结构的要求,我们采用目录服务技术来为其实现证书、证书作废列表的存储管理。
Certificate revocation mechanism, which is used to deal with the problem of certificate status in PKI, is a basic core problem of PKI.
证书撤销机制用于处理PK I中的证书状态问题,是PKI的一个基础性核心问题。
This paper introduces the components of PKI and their functions. Certificate revocation and trust models of PKI are emphasized.
文章介绍了PKI的组成、功能等,重点介绍了证书撤销和信任模型。
Following the analysis of the existing certificate revocation schemes, we propose a new certificate revocation scheme based the difficulty of resolving the Quadratic Residues problem.
在对目前已有证书状态发布方案分析的基础上,本文提出基于二次剩余难解问题的证书撤销状态发布方案。
This paper proposes a scheme of certificate revocation management based on binary search trees.
提出了一种基于二叉搜索树的证书撤消管理方案。
This paper proposes a promoted certificate revocation based on Hash table and balanced binary tree, and gives the analysis of validity and security.
提出了基于哈希表和平衡二叉树的证书撤销方案,并分析了该方案的有效性和安全性。
It USES improved mechanism of certificate revocation status and optimized data structure of LDAP directory and LDAP connection to support XKMS service.
通过改进证书撤销状态验证机制以及对LDAP目录结构和数据连接的优化来更好地支持XKMS服务。
You can also use this Web site to download a certificate authority (ca) certificate, certificate chain, or certificate revocation list (CRL), or to view the status of a pending request.
您也可以使用此网站下载证书颁发机构(CA)证书,证书链,或证书吊销列表(CRL),或查看挂起的申请的状态。
This paper analyzed the traditional model of public key infrastructure (PKI) certificate status information issued by certificate revocation list (CRL).
分析了应用证书撤消列表(CRL)发布公共密钥基础设施(PKI)证书状态信息的传统模型。
This paper analyzed the traditional model of public key infrastructure (PKI) certificate status information issued by certificate revocation list (CRL).
分析了应用证书撤消列表(CRL)发布公共密钥基础设施(PKI)证书状态信息的传统模型。
应用推荐