577財政部網路報繳稅.ppt
Certificate Authority,gis90550 陳俊佑,Outline,Public Key UsagesCAGCA,Public Key Usages,(Alice,KUA),E(KUA,M),Encryption,Alice,Bob,Public Key Usages,(Alice,KUA),Sig(KRA,M),Verification of digital signature,Alice,Bob,Verify(KUA,Sig),Trusted Third Party,Alice,Bob,X.509 Authentication Service,Part of X.500 directory service.Base on the use of public-key cryptography and digital signatures.It defined the certificate format and authentication protocols.,Certificate,ID card in internetIssued by CA,Certificate acquisition,(1)GenerateKUA,KRA pairs.,(2)Alice,KUA,ID proof,Alice,CA,(3)GenerateSig(KRCA,Alice,KUA),(4)Sig(KRCA,Alice,KUA),CertA,CA=Alice,KUA,Sig(KRCA,Alice,KUA),Revocation of Certificates,The CA must maintain a list consist of all revoked but not expired certificate issued by CA.When a user receives a certificate,the user must determine whether the certificate has been revoked.Users may maintain a CRL locally to avoid delay.,GCA(Government Certificate Authority),取得流程1.至 www.pki.gov.tw填寫自然人憑證申請,並產生Key pair.2.攜帶憑證磁片及身份證至服務窗口(中華電信)辦理。3.一天後可可啟用並可下載憑證。4.驗證Public Key與Private Key是否成對。,GCA(Government Certificate Authority),GCA(Government Certificate Authority),相關應用,財政部網路報繳稅交通部電子公路監理勞保局現況:憑證統計憑證簽發總數:389388憑證廢止總數:27149,