摘要
KeyNote作为一个开放的适用于分布式应用的信任管理模型,具有灵活、通用、可靠的优点而被广泛应用。论文简要分析了KeyNote信任管理系统的工作机制,并针对KeyNote设计者提出的未解决的凭证撤销问题,尝试给出了解决方案:通过增加黑名单和凭证生存期加以解决。
The KeyNote trust management system, introduced and implemented by M. Blaze, is a flexible and unifled system, and it allows direct authorization of security-critical action in open and distributed applications. However, there are certain important areas that Blaze has not yet addressed. One of areas is providing functionality similar to that of these certificate revocation lists(CRLs), keeping in mind the constraints about "negative credentials". Black list and active time of credentials are proposed to solve the problem through the overview and analysis of the KeyNote trust management system
出处
《信息安全与通信保密》
2008年第5期97-98,共2页
Information Security and Communications Privacy