论文部分内容阅读
PKI是“Public Key Infrastructure”的缩写,意为“公钥基础设施”。公钥体制是目前应用最广泛的一种加密体制,在这一体制中,加密密钥与解密密钥各不相同,发送信息的人利用接收者的公钥发送加密信息,接收者再利用自己专有的私钥进行解密。这种方式既保证了信息的机密性,又能保证信息具有不可抵赖性。目前,公钥体制广泛地用于CA认证、数字签名和密钥交换等领域。作为一种技术体系,PKI可以作为支持认证、完整性、机密性和不可否认性的技术基础,从技术上解决网上身份认证、信息完整性和抗抵赖等安全问题,为网络应用提供可靠的安全保障。但PKI绝不仅仅涉及到技术层面的问题,还涉及到电子政务、电子商务以及国家信息化的整体发展战略等多层面问题。PKI的核心是要解决信息网络空间中的信任问题,确定信息网络空间中各种经济、军事和管理行为主体(包括组织和个人)身份的惟一性、真实性和合法性,保护信息网络空间中各种主体的安全利益。
PKI is the acronym for “Public Key Infrastructure,” meaning “public key infrastructure.” The public key system is the most widely used encryption system. In this system, the encryption key and the decryption key are different. The sending person sends the encrypted information by using the recipient’s public key, and the recipient reuses his own Proprietary private key for decryption. This approach not only ensures the confidentiality of information, but also ensure that information is non-repudiation. At present, the public key system is widely used in CA certification, digital signatures and key exchange and other fields. As a technology system, PKI can technically solve the security problems of online identity authentication, information integrity and non-repudiation as a technical basis to support authentication, integrity, confidentiality and non-repudiation, and provide reliable security for network applications Protection. However, the PKI must not only involve technical issues but also multi-dimensional issues such as e-government, e-commerce and the overall development strategy of national informatization. The core of PKI is to solve the problem of trust in information cyberspace and to determine the uniqueness, authenticity and legitimacy of the identities of various economic, military and management actors (including organizations and individuals) in cyberspace and to protect the information cyberspace The security interests of various actors.