ETSI TR 102 044-2002 Electronic Signatures and Infrastructures (ESI) Requirements for Role and Attribute Certificates (V1 1 1)《电子签名和基础结构(ESI) 身份和属性证明要求(版本1 1 1)》.pdf
《ETSI TR 102 044-2002 Electronic Signatures and Infrastructures (ESI) Requirements for Role and Attribute Certificates (V1 1 1)《电子签名和基础结构(ESI) 身份和属性证明要求(版本1 1 1)》.pdf》由会员分享,可在线阅读,更多相关《ETSI TR 102 044-2002 Electronic Signatures and Infrastructures (ESI) Requirements for Role and Attribute Certificates (V1 1 1)《电子签名和基础结构(ESI) 身份和属性证明要求(版本1 1 1)》.pdf(47页珍藏版)》请在麦多课文档分享上搜索。
1、ETSI TR 102 044 1.1.1 (2002-12) Technical Repor Electronic Signatures and Infrastructures (ESI); Requirements for role and attribute certificates 2 ETSI TR 102 044 VI .I .I (2002-12) Reference DTR/ESI-000005 Keywords electronic signature, security ETSI 650 Route des Lucioles F-O6921 Sophia Antipolis
2、 Cedex - FRANCE Tel.: +33 4 92 94 42 O0 Fax: +33 4 93 65 47 16 Siret No 348 623 562 00017 - NAF 742 C Association but non lucratif enregistre la Sous-prfecture de Grasse (06) No 7803/88 Important notice Individual copies of the present document can be downloaded from: http:lwmv.etsi .arq The present
3、 document may be made available in more than one electronic version or in print. In any case of existing or perceived difference in contents between such versions, the reference version is the Portable Document Format (PDF). In case of dispute, the reference shall be the printing on ETSI printers of
4、 the PDF version kept on a specific network drive within ETSI Secretariat. Users of the present document should be aware that the document may be subject to revision or change of status. Information on the current status of this and other ETSI documents is available at ha p:/pa rta I. etsi I a rgltb
5、istat uslstatus .as p If you find errors in the present document, send your comment to: Cori vriaht Notifica tion No part may be reproduced except as authorized by written permission. The copyright and the foregoing restriction extend to reproduction in all media. O European Telecommunications Stand
6、ards Institute 2002. All rights reserved. DECTTM, PLUGTESTSTMand UMTSTMare Trade Marks of ETSI registered for the benefit of its Members. TIPHONTM and the TIPHON logo are Trade Marks currently being registered by ETSI for the benefit of its Members. 3GPPTM is a Trade Mark of ETSI registered for the
7、benefit of its Members and of the 3GPP Organizational Partners. ETSI 3 ETSI TR 102 044 VI .I .I (2002-12) Contents Intellectual Property Rights . .5 Foreword . 5 1 2 3 3.1 3.2 4 5 5.1 5.2 6 6.1 6.2 6.3 6.3.1 6.3.2 7 7.1 7.2 7.2.1 7.2.2 7.2.3 8 8.1 8.2 8.2.1 8.2.2 9 9.1 9.2 9.3 9.4 9.5 9.6 9.7 10 10.
8、1 10.2 11 11.1 11.2 11.3 11.4 11.5 12 12.1 Scope 6 References . .6 Definitions and abbreviations .7 . 7 . 8 Implications from the requirements of the Directive .8 European surveys .9 Personnel certification . 9 Currently implemented attribute certificate usage. 9 Various kinds of attributes . 1 O .
9、10 Group memberships . 10 Roles . . 12 Other authorization information . 12 Proxies . 12 Capabilities . . Claimed and certified attributes . 13 Claimed attributes. 13 Certified Attributes. 13 The Attribute Issuing Authority 13 Directly certified attributes . 14 Verified attributes . 14 Attribute mea
10、ning and representation . .15 Attribute meaning . 15 Attribute represen . 15 Group membership 15 . 15 Other Attribute characteristics . .16 16 16 16 16 17 17 17 Role Attribute life span Attribute certific Attribute certific Attribute revocati cate revocation . Attribute privacy . Ways to acquire att
11、ribute . Delegable attributes . Using Public Key Certificates Using Attribute Certificates Attribute Certificates management .20 Attribute verification by the ACA . 20 Link with a PKC . 20 Attribute Certific cation management 23 Attribute Certificate acquisition . . 23 Attribute delegation managemen
12、t .24 Placement of attributes in certificates .18 18 19 Recommendations . .24 Requirements for Attribute Certificate Policies 24 24 25 12.1.1 Requirements for ACAs . 12.1.2 Requirements for AAS . ETSI 4 ETSI TR 102 044 VI . 1 . 1 (2002-12) 12.2 12.3 12.4 12.5 Definition of cross-European roles . 26
13、Attribute Certificate Profile for Electronic Signatures . 26 Attribute Certificate Acquisition Protocol 27 Criteria for using PKCs or ACs 27 Annex A: Attribute syntax in ASN.l 28 Annex B: Guidelines for the certification of roles in subscription certificates . 30 Annex C: Bibliography 46 History 47
14、ETSI 5 ETSI TR 102 044 VI .I .I (2002-12) Intellectual Property Rights IPRs essential or potentially essential to the present document may have been declared to ETSI. The information pertaining to these essential IPRs, if any, is publicly available for ETSI members and non-members, and can be found
15、in ETSI SR 000 314: “Intellectual Property Rights (7PRs); Essential, orpotentially Essential, IPRs notlJied to ETSI in respect ofETSI standards“, which is available from the ETSI Secretariat. Latest updates are available on the ETSI Web server (5). All published ETSI deliverables shall include infor
16、mation which directs the reader to the above source of information. Foreword This Technical Report (TR) has been produced by ETSI Technical Committee Electronic Signatures and Infrastructures (ESI). The objective of the present document is to identiSl a set of requirements that will provide a basis
17、on which a subsequent standard can build policy requirements for attributes certified by Attribute Authorities or Certification Authorities either in a subjects PKCs (Public Key Certificates) or in ACs (Attribute Certificates). By attribute it is intended a persons qualification that entitles hidher
18、 to exert specific functions, e.g. CEO from company AAA, doctor in medicine from country BBB, barrister from country CCC, sales director from company DDD, etc. or obtain some privileges, e.g. member from Golf Club EEE, etc. A survey has been made on potential usages of attributes and the outcome has
19、 been that very little attribute usage currently exists, so very little (if any) experience can be draw from the real world. Therefore the present document is based both on the few information received and the best assumptions that could be done on that topic. When no distinction is wished to be mad
20、e between an Attribute Authority and a Certification Authority, the generic term Attribute Certification Authority (ACA) is being used. The findings of the present document are intended mainly for the support of electronic signatures, but nothing prevents them from being used for other reasons, e.g.
21、 for authorization. ETSI 6 ETSI TR 102 044 VI .I .I (2002-12) 1 Scope The present document identifies a set of requirements that will provide a basis for a subsequent standard, which will then build policy requirements for attributes certified by Attribute Authorities or Certification Authorities co
22、mplying with 4 and related standards. In some electronic signature applications, roles and attributes can be exerted only if a claimers right to use them is certified by one competent authority which is trusted by the signed document users. The scope of the present document is to investigate on the
23、attribute certification related topics in order to cover the general use of certified attributes in the context of electronic signatures. Attributes that can be used in such a context can also be used for other reasons, e.g. for authorization. 2 Re fe re nces For the purposes of this Technical Repor
24、t (TR), the following references apply: il 21 31 ETSI TS 101 733: “Electronic Signatures and Infrastructures (ESI); Electronic Signature Formats“. ETSI TR 102 041: “Signature Policies Report“. Directive 1999/93/EC of the European Parliament and of the Council of 13 December 1999 on a Community frame
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ETSITR1020442002ELECTRONICSIGNATURESANDINFRASTRUCTURESESIREQUIREMENTSFORROLEANDATTRIBUTECERTIFICATESV111

链接地址:http://www.mydoc123.com/p-735646.html