...
首页> 外文期刊>Journal of Theoretical and Applied Information Technology >EXPLORATION STUDY OF CERTIFICATE POLICY AND CERTIFICATION PRACTICE STATEMENT DESIGN FOR CERTIFICATION AUTHORITIES IN INDONESIA
【24h】

EXPLORATION STUDY OF CERTIFICATE POLICY AND CERTIFICATION PRACTICE STATEMENT DESIGN FOR CERTIFICATION AUTHORITIES IN INDONESIA

机译:印度尼西亚认证机构的证书政策和认证实践声明设计的探索研​​究

获取原文
           

摘要

Certification Authority (CA) must unveil its Certificate Policy (CP) and Certification Practice Statement (CPS) as obligatory and fundamental documents to describe its technical information security, business processes, and legal compliance. Although had been initiated since 2014, Indonesia National Public Key Infrastructure (INPKI) still cannot be operated completely by Root CA, Sub-CA?s, and other involved participants. This situation affected by CA?s inability to produce adequate CP and CPS that cover necessary information required above. As Root CA in INPKI, Ministry of Communication and Information Technology (MCIT) shall propose CP and CPS for itself and also provide CP and CPS framework for its Sub-CAs. Previously, Sub-CAs confronts difficulties to propose CP and CPS due to their low proficiency. Using the concept of knowledge management, MCIT needs to regulate and educate Sub-CAs and itself as Root CA by proposing CP and CPS as knowledge transfer and guidelines. Proposed CP and CPS become empirical externalization and internalization so that each CA can compose its own CP and CPS with decent content to cover the required issues. This research explores how CAs in INPKI formulates their CP and CPS based on Request for Comment (RFC) 3647 with larger point of view. This exploration aims to extend and criticize whether the proposed CP and CPS are qualified to encourage the CA?s readiness and the preparation of INPKI. This exploration contributes significant impact through preparation of CP and CPS. Produced CP and CPS will be more qualified and enhanced in unveiling necessary information to obtain trustworthiness in three aspects: governance; technical; and human resource requirements.
机译:证书颁发机构(CA)必须公开其证书政策(CP)和证书实践声明(CPS)作为强制性和基本文件,以描述其技术信息安全性,业务流程和法律合规性。尽管自2014年启动以来,印尼国家公钥基础结构(INPKI)仍无法由根CA,Sub-CA?s和其他相关参与者完全操作。 CA不能产生足够的CP和CPS来覆盖上述必需信息,从而影响了这种情况。作为INPKI中的根CA,通信和信息技术部(MCIT)将为其自身提议CP和CPS,并为其子CA提供CP和CPS框架。以前,子CA由于其熟练程度低而难以提出CP和CPS。使用知识管理的概念,MCIT需要通过提议将CP和CPS作为知识转移和指南来对Sub-CA及其自身作为根CA进行规范和教育。提议的CP和CPS变成了经验上的外部化和内部化,因此每个CA都可以组成自己的具有适当内容的CP和CPS来覆盖所需的问题。这项研究探索了INPKI中的CA如何基于具有更大视角的Request for Comment(RFC)3647制定其CP和CPS。这项探索旨在扩展和批评提议的CP和CPS是否符合鼓励CA准备和INPKI准备的资格。这项探索通过制备CP和CPS做出了重大贡献。制作的CP和CPS将在发布必要的信息以在三个方面获得信任的过程中更有资格和得到增强。技术;和人力资源需求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号