⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 critical-discussion.htm

📁 The Open–source PKI Book Version 2.4.6 Edition Copyright &copy 1999, 2000 by Symeon (Simos) Xenite
💻 HTM
字号:
<HTML><HEAD><TITLE>Critical discussion[TODO]</TITLE><METANAME="GENERATOR"CONTENT="Modular DocBook HTML Stylesheet Version 1.55"><LINKREL="HOME"TITLE="The Open&#8211;source PKI Book"HREF="ospki-book.htm"><LINKREL="PREVIOUS"TITLE="S/MIME CMS [TODO]"HREF="smime-cms.htm"><LINKREL="NEXT"TITLE="Benefits of an Open&#8211;Source PKI implementation[TODO]"HREF="opensource-benefits.htm"></HEAD><BODYCLASS="CHAPTER"BGCOLOR="#FFFFFF"TEXT="#000000"LINK="#0000FF"VLINK="#840084"ALINK="#0000FF"><DIVCLASS="NAVHEADER"><TABLEWIDTH="100%"BORDER="0"CELLPADDING="0"CELLSPACING="0"><TR><THCOLSPAN="3"ALIGN="center">The Open&#8211;source PKI Book: A guide to PKIs and Open&#8211;source Implementations</TH></TR><TR><TDWIDTH="10%"ALIGN="left"VALIGN="bottom"><AHREF="smime-cms.htm">Prev</A></TD><TDWIDTH="80%"ALIGN="center"VALIGN="bottom"></TD><TDWIDTH="10%"ALIGN="right"VALIGN="bottom"><AHREF="opensource-benefits.htm">Next</A></TD></TR></TABLE><HRALIGN="LEFT"WIDTH="100%"></DIV><DIVCLASS="CHAPTER"><H1><ANAME="CRITICAL-DISCUSSION">Chapter 10. Critical discussion[TODO]</A></H1><P>    Include info from "10 risks on PKIs", ellison/schneier. [TODO]    </P><P>    Security of a system is equal to the "security" of it's weakest link.    People don't usually see all the links.    People don't count both network/human factors. From each discipline,    they stress the factor they have familiarity.    </P><P>    Should we have CA AND RA? Network security says it's safer,    layered security, hierarchy, etc. Theoretic ppl says no much difference,    or it is worse to have two different. Standards (PKIX) propose to     use an RA, although do not oblige.    </P><P>    Watch the interactions of your system to secure it.    </P><P>    Human factor is greatly ignored. CS disciplines ignore the study as    too law-bound, non-CS disciplines don't have the whole picture.    Is it important to study this one? Can traditional methods solve the    problem?    </P><P>    Who has the private key? It's stored in a security module, right?    If it fails, what happens? Have a backup? To store in different locations    (geographically)? There was a recent relevant discussion on those two MS keys.    </P><P>    We cannot draw the whole picture at once. We need to do it step by step.    Open-Source reference implementations, widely/wildly used can show the    way. Need to test and analyse feedback.    </P><P>    We need SSO software, openproject has PAM draft and it looks nice.    There is a "killer" applicance from Samba developers that does SSO?    </P><P>    CDSA version 2 is very nice and standardised. openproject tambien.    Bull.fr has the responsibility for the Linux port or implementation, along with    Intel.    Results promised in September 2000.    </P><P>    In the Department of Defense Appropriations Bill of the US for the year 2001    there is a description of the budget allocations. The document mentions    the budget for the usage of PKIs and the recommendation is for $18.6m US dollars.    It is important to notice that the description of the expense is    <ICLASS="EMPHASIS">Information Assurance</I>. The document is available from the    <AHREF="wais://wais.access.gpo.gov"TARGET="_top">House Reports Online via GPO Access</A>    link as report number 106-644.    </P></DIV><DIVCLASS="NAVFOOTER"><HRALIGN="LEFT"WIDTH="100%"><TABLEWIDTH="100%"BORDER="0"CELLPADDING="0"CELLSPACING="0"><TR><TDWIDTH="33%"ALIGN="left"VALIGN="top"><AHREF="smime-cms.htm">Prev</A></TD><TDWIDTH="34%"ALIGN="center"VALIGN="top"><AHREF="ospki-book.htm">Home</A></TD><TDWIDTH="33%"ALIGN="right"VALIGN="top"><AHREF="opensource-benefits.htm">Next</A></TD></TR><TR><TDWIDTH="33%"ALIGN="left"VALIGN="top">S/MIME CMS [TODO]</TD><TDWIDTH="34%"ALIGN="center"VALIGN="top">&nbsp;</TD><TDWIDTH="33%"ALIGN="right"VALIGN="top">Benefits of an Open&#8211;Source PKI implementation[TODO]</TD></TR></TABLE></DIV></BODY></HTML>

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -