Standalone CA supporting large scale security applications

谭湘融,司天歌,戴一奇
DOI: https://doi.org/10.3321/j.issn:1000-0054.2004.01.019
2004-01-01
Abstract:Certification authorities (CA) can be classified as standalone CA and hierarchical CA. Most large-scale security systems use hierarchical CA. A standalone CA model was developed to utilize the advantages of standalone CA for application in large-scale security systems. This paper analyzes the advantages and disadvantages of two models to design the core protocol in the model and analyze its security and load. Compared to hierarchical CA, the standalone CA has simple verification and easy maintenance, while avoiding the standalone CA's limitations in scale and flexibility. The CA can issue certificates across zones and implement multilevel management. The prototype is suitable for large-scale security systems.
What problem does this paper attempt to address?