Certificate validation method and certificate validation server and storage medium
    1.
    发明授权
    Certificate validation method and certificate validation server and storage medium 有权
    证书验证方法和证书验证服务器和存储介质

    公开(公告)号:US08380985B2

    公开(公告)日:2013-02-19

    申请号:US12826248

    申请日:2010-06-29

    IPC分类号: G06F21/00

    摘要: A certificate validation method for causing a certificate validation server to receive a certificate validation request from a given terminal device, build a certification path of from a first certificate authority (CA) to a second CA, perform validation of the certification path, and send a validation result to the terminal which issued the certificate validation request is disclosed. The validation server detects either a key update of any given CA or a compromise of the given CA, acquires a certificate of relevant CA and first certificate status information and second certificate status information, stores the acquired information in a storage unit or, alternatively, updates the information stored in the storage based on the acquired information, and performs the building of a certification path and validation of the certification path by use of the information of the storage unit.

    摘要翻译: 一种证书验证方法,用于使证书验证服务器从给定终端设备接收证书验证请求,构建从第一认证中心(CA)到第二CA的认证路径,执行证书路径的验证,并发送 公开了颁发证书验证请求的终端的验证结果。 验证服务器检测任何给定CA的密钥更新或给定CA的妥协,获取相关CA和第一证书状态信息和第二证书状态信息的证书,将获取的信息存储在存储单元中,或者替换地,更新 基于获取的信息存储在存储器中的信息,并且通过使用存储单元的信息来执行认证路径的建立和认证路径的验证。

    CRYPTOGRAPHIC DEVICE MANAGEMENT METHOD, CRYPTOGRAPHIC DEVICE MANAGEMENT SERVER, AND PROGRAM
    2.
    发明申请
    CRYPTOGRAPHIC DEVICE MANAGEMENT METHOD, CRYPTOGRAPHIC DEVICE MANAGEMENT SERVER, AND PROGRAM 审中-公开
    CRYPTOGRAPHIC设备管理方法,CRYPTOGRAPHIC设备管理服务器和程序

    公开(公告)号:US20120066490A1

    公开(公告)日:2012-03-15

    申请号:US13209964

    申请日:2011-08-15

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0877 G06F21/72

    摘要: A cryptographic device management server receives a first cryptographic calculation request from an arbitrary terminal device via a network, transmits a second cryptographic calculation request generated on the basis of the first cryptographic calculation request, management information of the terminal device and management information of the cryptographic device to a cryptographic device selected on the basis of the management information of the terminal devices and management information of the cryptographic devices stored in the cryptographic device management server, via a connection interface, receives a second cryptographic calculation result from the cryptographic device, and transmits a first cryptographic calculation result generated on the basis of the second cryptographic calculation result, the management information of the terminal device and the management information of the cryptographic device to the terminal device of the source of the first cryptographic calculation request via the network.

    摘要翻译: 密码装置管理服务器经由网络从任意终端装置接收第一加密计算请求,发送基于第一加密计算请求生成的第二密码计算请求,终端装置的管理信息和密码装置的管理信息 基于终端装置的管理信息选择的加密装置和通过连接接口存储在密码装置管理服务器中的密码装置的管理信息,从密码装置接收第二加密计算结果,并发送 基于第二加密计算结果生成的第一加密计算结果,终端装置的管理信息和加密装置的管理信息到第一加密计算源r的终端装置 通过网络来衡量。

    CERTIFICATE VALIDATION METHOD AND CERTIFICATE VALIDATION SERVER AND STORAGE MEDIUM
    3.
    发明申请
    CERTIFICATE VALIDATION METHOD AND CERTIFICATE VALIDATION SERVER AND STORAGE MEDIUM 有权
    证书验证方法和证书验证服务器和存储介质

    公开(公告)号:US20110004763A1

    公开(公告)日:2011-01-06

    申请号:US12826248

    申请日:2010-06-29

    IPC分类号: H04L9/32

    摘要: A certificate validation method for causing a certificate validation server to receive a certificate validation request from a given terminal device, build a certification path of from a first certificate authority (CA) to a second CA, perform validation of the certification path, and send a validation result to the terminal which issued the certificate validation request is disclosed. The validation server detects either a key update of any given CA or a compromise of the given CA, acquires a certificate of relevant CA and first certificate status information and second certificate status information, stores the acquired information in a storage unit or, alternatively, updates the information stored in the storage based on the acquired information, and performs the building of a certification path and validation of the certification path by use of the information of the storage unit.

    摘要翻译: 一种证书验证方法,用于使证书验证服务器从给定终端设备接收证书验证请求,构建从第一认证中心(CA)到第二CA的认证路径,执行认证路径的验证,并发送 公开了颁发证书验证请求的终端的验证结果。 验证服务器检测任何给定CA的密钥更新或给定CA的妥协,获取相关CA和第一证书状态信息和第二证书状态信息的证书,将获取的信息存储在存储单元中,或者替换地,更新 基于获取的信息存储在存储器中的信息,并且通过使用存储单元的信息来执行认证路径的建立和认证路径的验证。

    Method of validation public key certificate and validation server
    4.
    发明授权
    Method of validation public key certificate and validation server 有权
    验证公钥证书和验证服务器的方法

    公开(公告)号:US08347082B2

    公开(公告)日:2013-01-01

    申请号:US12542798

    申请日:2009-08-18

    IPC分类号: H04L29/06

    摘要: In response to a validation request that includes second information identifying the certificate authority, key information of the certificate authority at issuance of the public key certificate, and information identifying the public key certificate, if the second information identifying the certificate authority included in the validation request corresponds to the first information identifying the certificate authority included in the authority certificate, and the information identifying the public key certificate included in the validation request does not exist in the revocation information, the validation server creates a validation result indicating that the public key certificate corresponding to the information identifying the public key certificate included in the validation request is valid.

    摘要翻译: 响应于包括标识证书颁发机构的第二信息的确认请求,在发行公共密钥证书时的证书颁发机构的密钥信息和识别公开密钥证书的信息,如果识别包括在验证请求中的证书颁发机构的第二信息 对应于识别权限证书中包含的证书颁发机构的第一信息,并且识别包含在验证请求中的公钥证书的信息不存在于撤销信息中,验证服务器创建指示公钥证书对应的验证结果 识别包含在验证请求中的公钥证书的信息是有效的。

    Validation server, validation method, and program
    5.
    发明授权
    Validation server, validation method, and program 失效
    验证服务器,验证方法和程序

    公开(公告)号:US08176316B2

    公开(公告)日:2012-05-08

    申请号:US12392430

    申请日:2009-02-25

    IPC分类号: H04C29/06

    摘要: A validation server using HSM, which reduces required process time from receiving a validation request to responding with a validation result, and comprises a first software cryptographic module 142 and a second software cryptographic module 143 on a validation server 130 whose HSM is coupled with an I/F part 148. According to the validation server, load states of HSM, the first software cryptographic module 142 and the second software cryptographic module 143 are monitored by a cryptographic module monitor unit 141, and when cryptographic calculations in a validation process of certificates are conducted, the cryptographic calculations are executed by using the least loaded cryptographic module selected at a cryptographic module selector unit 140.

    摘要翻译: 使用HSM的验证服务器,其减少从接收验证请求到响应验证结果所需的处理时间,并且包括验证服务器130上的第一软件加密模块142和第二软件加密模块143,其中HSM与I / F部分148.根据验证服务器,HSM的加载状态,第一软件加密模块142和第二软件加密模块143由加密模块监视单元141监视,并且当证书的验证过程中的密码计算是 通过使用在加密模块选择器单元140处选择的最少加密的加密模块来执行加密计算。

    Validation server, validation method, and program
    6.
    发明授权
    Validation server, validation method, and program 有权
    验证服务器,验证方法和程序

    公开(公告)号:US08819417B2

    公开(公告)日:2014-08-26

    申请号:US13407376

    申请日:2012-02-28

    IPC分类号: H04L29/06

    摘要: A validation server using HSM, which reduces required process time from receiving a validation request to responding with a validation result, and comprises a first software cryptographic module 142 and a second software cryptographic module 143 on a validation server 130 whose HSM is coupled with an I/F part 148. According to the validation server, load states of HSM, the first software cryptographic module 142 and the second software cryptographic module 143 are monitored by a cryptographic module monitor unit 141, and when cryptographic calculations in a validation process of certificates are conducted, the cryptographic calculations are executed by using the least loaded cryptographic module selected at a cryptographic module selector unit 140.

    摘要翻译: 使用HSM的验证服务器,其减少从接收验证请求到响应验证结果所需的处理时间,并且包括验证服务器130上的第一软件加密模块142和第二软件加密模块143,其中HSM与I / F部分148.根据验证服务器,HSM的加载状态,第一软件加密模块142和第二软件加密模块143由加密模块监视单元141监视,并且当证书的验证过程中的密码计算是 通过使用在加密模块选择器单元140处选择的最少加密的加密模块来执行加密计算。

    VALIDATION SERVER, VALIDATION METHOD, AND PROGRAM
    7.
    发明申请
    VALIDATION SERVER, VALIDATION METHOD, AND PROGRAM 有权
    验证服务器,验证方法和程序

    公开(公告)号:US20120159158A1

    公开(公告)日:2012-06-21

    申请号:US13407376

    申请日:2012-02-28

    IPC分类号: H04L29/06

    摘要: A validation server using HSM, which reduces required process time from receiving a validation request to responding with a validation result, and comprises a first software cryptographic module 142 and a second software cryptographic module 143 on a validation server 130 whose HSM is coupled with an I/F part 148. According to the validation server, load states of HSM, the first software cryptographic module 142 and the second software cryptographic module 143 are monitored by a cryptographic module monitor unit 141, and when cryptographic calculations in a validation process of certificates are conducted, the cryptographic calculations are executed by using the least loaded cryptographic module selected at a cryptographic module selector unit 140.

    摘要翻译: 使用HSM的验证服务器,其减少从接收验证请求到响应验证结果所需的处理时间,并且包括验证服务器130上的第一软件加密模块142和第二软件加密模块143,其中HSM与I / F部分148.根据验证服务器,HSM的加载状态,第一软件加密模块142和第二软件加密模块143由加密模块监视单元141监视,并且当证书的验证过程中的密码计算是 通过使用在加密模块选择器单元140处选择的最少加密的加密模块来执行加密计算。

    CERTIFICATE VALIDATION METHOD AND VALIDATION SERVER
    8.
    发明申请
    CERTIFICATE VALIDATION METHOD AND VALIDATION SERVER 审中-公开
    证书验证方法和验证服务器

    公开(公告)号:US20110231662A1

    公开(公告)日:2011-09-22

    申请号:US13021655

    申请日:2011-02-04

    IPC分类号: H04L9/32

    摘要: The validation server obtains information related to a first cryptographic method from a certificate which is contained in a certificate validation request from a terminal device. When the information related to the first cryptographic method is not stored in a storage unit of the validation server as valid information, the validation server determines that the information related to the first cryptographic method is invalid. When the information related to the first cryptographic method is stored in the storage unit as valid information and also the information related to a second cryptographic method listed in the certificate in the certification path is not stored in the storage unit during the certification path validation, the validation server determines that the information related to the second cryptographic method is invalid.

    摘要翻译: 验证服务器从终端设备的证书验证请求中包含的证书中获取与第一密码方法相关的信息。 当与第一密码方法相关的信息没有作为有效信息存储在验证服务器的存储单元中时,验证服务器确定与第一密码方法相关的信息是无效的。 当与第一密码方法有关的信息作为有效信息存储在存储单元中时,并且在认证路径验证期间,在认证路径中的证书中列出的与第二密码方法相关的信息不存储在存储单元中时, 验证服务器确定与第二密码方法相关的信息是无效的。

    METHOD OF VALIDATION PUBLIC KEY CERTIFICATE AND VALIDATION SERVER
    9.
    发明申请
    METHOD OF VALIDATION PUBLIC KEY CERTIFICATE AND VALIDATION SERVER 有权
    验证公钥证书和验证服务器的方法

    公开(公告)号:US20100122081A1

    公开(公告)日:2010-05-13

    申请号:US12542798

    申请日:2009-08-18

    IPC分类号: H04L9/00

    摘要: In response to a validation request that includes second information identifying the certificate authority, key information of the certificate authority at issuance of the public key certificate, and information identifying the public key certificate, if the second information identifying the certificate authority included in the validation request corresponds to the first information identifying the certificate authority included in the authority certificate, and the information identifying the public key certificate included in the validation request does not exist in the revocation information, the validation server creates a validation result indicating that the public key certificate corresponding to the information identifying the public key certificate included in the validation request is valid.

    摘要翻译: 响应于包括标识证书颁发机构的第二信息的确认请求,在发行公共密钥证书时的证书颁发机构的密钥信息和识别公开密钥证书的信息,如果识别包括在验证请求中的证书颁发机构的第二信息 对应于识别权限证书中包含的证书颁发机构的第一信息,并且识别包含在验证请求中的公钥证书的信息不存在于撤销信息中,验证服务器创建指示公钥证书对应的验证结果 识别包含在验证请求中的公钥证书的信息是有效的。

    VALIDATION SERVER, VALIDATION METHOD, AND PROGRAM
    10.
    发明申请
    VALIDATION SERVER, VALIDATION METHOD, AND PROGRAM 失效
    验证服务器,验证方法和程序

    公开(公告)号:US20090300349A1

    公开(公告)日:2009-12-03

    申请号:US12392430

    申请日:2009-02-25

    IPC分类号: H04L9/00 H04L9/28

    摘要: A validation server using HSM, which reduces required process time from receiving a validation request to responding with a validation result, and comprises a first software cryptographic module 142 and a second software cryptographic module 143 on a validation server 130 whose HSM is coupled with an I/F part 148. According to the validation server, load states of HSM, the first software cryptographic module 142 and the second software cryptographic module 143 are monitored by a cryptographic module monitor unit 141, and when cryptographic calculations in a validation process of certificates are conducted, the cryptographic calculations are executed by using the least loaded cryptographic module selected at a cryptographic module selector unit 140.

    摘要翻译: 使用HSM的验证服务器,其减少从接收验证请求到响应验证结果所需的处理时间,并且包括验证服务器130上的第一软件加密模块142和第二软件加密模块143,其中HSM与I / F部分148.根据验证服务器,HSM的加载状态,第一软件加密模块142和第二软件加密模块143由加密模块监视单元141监视,并且当证书的验证过程中的密码计算是 通过使用在加密模块选择器单元140处选择的最少加密的加密模块来执行加密计算。