tailieunhanh - Developing Web Services with Apache Axis 2 phần 8

Như vậy một tin nhắn đã ký kết được gọi là một "Giấy chứng nhận". Thẩm quyền đó được gọi là một "giấy chứng nhận quyền (CA)". Sau đó, Thánh Phaolô có thể đưa giấy chứng nhận của mình trên trang web cá nhân của mình, email cho bạn trực tiếp hoặc đặt nó lên bên thứ khoảng 3 trang web công cộng. | Chapter 9 Signing and encrypting SOAP messages 155 Such a signed message is called a certificate . That authority is called a certificate authority CA . Then Paul can put his certificate on his personal web site email it to you directly or put it onto some 3rd party public web site. From where you get the certificate is unimportant. What is important is that if you can verify the signature of that CA and you trust what the CA says then you can trust that public key in the certificate. In order to verify the signature you will need the public key of that CA. What You re back to the origin of the problem. However you only need to find out a single public key for a single entity the CA not a public key for everyone you need to communicate with. How to obtain that public key Usually it is already configured in your browser or you can download it from a trusted web site newspaper or other sources that you trust. A CA doesn t really need to be a government authority. It can be well known commercial organizations such as VeriSign. It means that in order to use asymmetric encryption and digital signature people need private keys public keys a CA and certificates. All these elements combined together is called a public key infrastructure PKI because it provides a platform for us to use public keys. Distinguished name If you review the certificate Name Paul Public key 666888 Signature you will see that it is not that useful because there are probably millions of people named Paul in the world. Therefore in a real certificate usually the country city and the company of that individual are also included like CN means Organization common name company State Country __I Name CN Paul McNeil O Microsoft ST WA C US Public key 666888 Signature The whole thing is called a distinguished name DN Now if you re looking for the public key of Paul McNeil who works at IBM you know that the certificate above should NOT be used. Performance issue with asymmetric encryption .

TÀI LIỆU MỚI ĐĂNG
15    193    0    18-05-2024
173    111    0    18-05-2024
11    158    1    18-05-2024
11    108    0    18-05-2024
6    105    0    18-05-2024
crossorigin="anonymous">
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.