ãªãŒãã³ ãããã¯ãŒã¯ã§ã®ããŒã¿ä¿è·ãå®çŸããããã«äžè¬çã«äœ¿çšãããè£å©ããŒã«ã® XNUMX ã€ãããžã¿ã«èšŒææžãã¯ãããžã§ããããšã¯åšç¥ã®äºå®ã§ãã ãã ãããã®ãã¯ãããžãŒã®äž»ãªæ¬ ç¹ã¯ãããžã¿ã«èšŒææžãçºè¡ããã»ã³ã¿ãŒã«å¯Ÿããç¡æ¡ä»¶ã®ä¿¡é Œã§ããããšã¯åšç¥ã®äºå®ã§ãã ENCRY ã®ãã¯ãããžãŒããã³ã€ãããŒã·ã§ã³æ
åœãã£ã¬ã¯ã¿ãŒã® Andrey Chmora æ°ã¯ãçµç¹åãžã®æ°ããã¢ãããŒããææ¡ããŸããã å
¬ééµã€ã³ãã©ã¹ãã©ã¯ã㣠(å
¬ééµã€ã³ãã©ã¹ãã©ã¯ãã£ã PKIïŒãçŸåšã®æ¬ ç¹ã解æ¶ããã®ã«åœ¹ç«ã¡ãåæ£å°åž³ïŒãããã¯ãã§ãŒã³ïŒãã¯ãããžãŒã䜿çšããŸãã ãããããŸãæåã«ã
çŸåšã®å
¬ééµã€ã³ãã©ã¹ãã©ã¯ãã£ãŒãã©ã®ããã«æ©èœããã®ããããç解ããŠããããã®äž»èŠãªæ¬ ç¹ãç¥ã£ãŠããå Žåã¯ã以äžã§ææ¡ããŠããå€æŽå
容ã«é²ãã§ãã ããã
ããžã¿ã«çœ²åãšèšŒææžãšã¯äœã§ãã?ã€ã³ã¿ãŒãããäžã§ã®ããåãã«ã¯ãåžžã«ããŒã¿ã®è»¢éã䌎ããŸãã ç§ãã¡ã¯çãããŒã¿ãå®å šã«éä¿¡ãããããšãä¿èšŒããããšã«é¢å¿ãæã£ãŠããŸãã ããããã»ãã¥ãªãã£ãšã¯äœã§ãããã? æãæ±ããããŠããã»ãã¥ãªã㣠ãµãŒãã¹ã¯ãæ©å¯æ§ãå®å šæ§ãä¿¡é Œæ§ã§ãã ãã®ç®çã®ããã«ãçŸåšãé察称æå·åãã€ãŸãå ¬ééµã䜿çšããæå·åã®æ¹æ³ã䜿çšãããŠããŸãã
ãããã®ã¡ãœããã䜿çšããã«ã¯ã察話ã®å¯Ÿè±¡ã XNUMX ã€ã®åå¥ã®ãã¢ã«ãªã£ãã㌠(å ¬éããŒãšç§å¯ããŒ) ãæã£ãŠããå¿ èŠããããšããäºå®ããå§ããŸãããã 圌ãã®ååã«ãããäžã§è¿°ã¹ãã»ãã¥ãªã㣠ãµãŒãã¹ãæäŸãããŸãã
æ å ±è»¢éã®æ©å¯æ§ã¯ã©ã®ããã«ç¢ºä¿ãããŸãã? ããŒã¿ãéä¿¡ããåã«ãéä¿¡å å ¥è ã¯åä¿¡è ã®å ¬ééµã䜿çšããŠãªãŒãã³ ããŒã¿ãæå·åïŒæå·å€æïŒããåä¿¡è ã¯ãã¢ã®ç§å¯éµã䜿çšããŠåä¿¡ããæå·æã埩å·ããŸãã
éä¿¡ãããæ
å ±ã®å®å
šæ§ãšä¿¡é Œæ§ã¯ã©ã®ããã«ããŠéæãããã®ã§ãããã? ãã®åé¡ã解決ããããã«ãå¥ã®ã¡ã«ããºã ãäœæãããŸããã ãªãŒãã³ããŒã¿ã¯æå·åãããŸããããæå·åããã·ã¥é¢æ°ãé©çšããçµæãã€ãŸãå
¥åããŒã¿ã·ãŒã±ã³ã¹ã®ãå§çž®ããããã€ã¡ãŒãžã¯æå·åããã圢åŒã§éä¿¡ãããŸãã ãã®ãããªããã·ã¥ã®çµæã¯ããã€ãžã§ã¹ãããšåŒã°ããéä¿¡åŽå å
¥è
(ã蚌人ã) ã®ç§å¯éµã䜿çšããŠæå·åãããŸãã ãã€ãžã§ã¹ããæå·åãããçµæãããžã¿ã«çœ²åãåŸãããŸãã ããã¯å¹³æãšãšãã«åä¿¡å å
¥è
(ãæ€èšŒè
ã) ã«éä¿¡ãããŸãã 圌ã¯èšŒäººã®å
¬ééµã®ããžã¿ã«çœ²åã埩å·ãããããæå·åããã·ã¥é¢æ°ãé©çšããçµæãšæ¯èŒããŸããæå·åããã·ã¥é¢æ°ã¯ãæ€èšŒè
ãåä¿¡ãããªãŒãã³ããŒã¿ã«åºã¥ããŠç¬èªã«èšç®ããŸãã ããããäžèŽããå Žåãããã¯ãããŒã¿ãéä¿¡åŽå å
¥è
ã«ãã£ãŠæ¬ç©ã®å®å
šãªåœ¢åŒã§éä¿¡ãããæ»æè
ã«ãã£ãŠå€æŽãããŠããªãããšã瀺ããŸãã
å人ããŒã¿ãšæ¯æãæ
å ±ãæ±ãã»ãšãã©ã®ãªãœãŒã¹ (éè¡ãä¿éºäŒç€Ÿãèªç©ºäŒç€Ÿãæ¯æãã·ã¹ãã ãçšå眲ãªã©ã®æ¿åºããŒã¿ã«) ã¯ãé察称æå·åæ¹åŒãç©æ¥µçã«äœ¿çšããŠããŸãã
ããžã¿ã«èšŒææžã¯ãããšäœã®é¢ä¿ãããã®ã§ãããã? ããã¯ç°¡åã§ãã æåãš XNUMX çªç®ã®ããã»ã¹ã«ã¯äž¡æ¹ãšãå ¬éããŒãå«ãŸããŠãããå ¬éããŒãäžå¿çãªåœ¹å²ãæãããããããŒãå®éã«éä¿¡è (眲åæ€èšŒã®å Žåã¯èšŒäºº) ãŸãã¯åä¿¡è ã«å±ããŠãããå ¬éããŒãå®éã«ææãããŠããªãããšã確èªããããšãéåžžã«éèŠã§ããæ»æè ã®ããŒã«çœ®ãæããããŸãã ãã®ãããå ¬éããŒã®ä¿¡é Œæ§ãšå®å šæ§ãä¿èšŒããããã«ããžã¿ã«èšŒææžãååšããŸãã
泚: å
¬éããŒã®ä¿¡é Œæ§ãšå®å
šæ§ã¯ãå
¬éããŒã¿ã®ä¿¡é Œæ§ãšå®å
šæ§ãšãŸã£ããåãæ¹æ³ãã€ãŸãé»åããžã¿ã«çœ²å (EDS) ã䜿çšããŠç¢ºèªãããŸãã
ããžã¿ã«èšŒææžã¯ã©ãããæ¥ãã®ã§ãããã?ä¿¡é ŒãããèªèšŒå±ãã€ãŸãèªèšŒå± (CA) ã¯ãããžã¿ã«èšŒææžã®çºè¡ãšç¶æãæ
åœããŸãã ç³è«è
㯠CA ã«èšŒææžã®çºè¡ãèŠæ±ããç»é²ã»ã³ã¿ãŒ (CR) ã§æ¬äººç¢ºèªãåããCA ãã蚌ææžãåãåããŸãã CA ã¯ã蚌ææžã®å
¬éããŒãçºè¡å¯Ÿè±¡ã®ãšã³ãã£ãã£ã«æ£ç¢ºã«å±ããŠããããšãä¿èšŒããŸãã
å ¬ééµã®ä¿¡é Œæ§ã確èªããªãå Žåãæ»æè ããã®éµã転é/ä¿ç®¡ããéã«ãå ¬ééµãèªåã®ãã®ã«çœ®ãæããå¯èœæ§ããããŸãã 眮æãè¡ãããå Žåãæ»æè ã¯éä¿¡åŽå å ¥è ãåä¿¡åŽå å ¥è ã«éä¿¡ãããã¹ãŠã®ãã®ã埩å·ãããããªãŒãã³ ããŒã¿ãç¬èªã®è£éã§å€æŽãããã§ããããã«ãªããŸãã
ããžã¿ã«èšŒææžã¯ãé察称æå·åãå©çšã§ããå Žåã¯ã©ãã§ã䜿çšãããŸãã æãäžè¬çãªããžã¿ã«èšŒææžã® XNUMX ã€ã¯ãHTTPS ãããã³ã«ãä»ããå®å šãªéä¿¡ã®ããã® SSL 蚌ææžã§ãã SSL 蚌ææžã®çºè¡ã«ã¯ãããŸããŸãªç®¡èœåºåã«ç»é²ãããŠããäœçŸãã®äŒæ¥ãé¢äžããŠããŸãã äž»ãªã·ã§ã¢ã¯ãIdenTrustãComodoãGoDaddyãGlobalSignãDigiCertãCERTUMãActalisãSecomãTrustwave ã® XNUMX ïœ XNUMX ã®å€§èŠæš¡ä¿¡é Œã»ã³ã¿ãŒã«ããã£ãŠããŸãã
CA ãš CR 㯠PKI ã®ã³ã³ããŒãã³ãã§ããã以äžãå«ãŸããŸãã
- ãã£ã¬ã¯ããªãéã â ããžã¿ã«èšŒææžã®å®å šãªä¿ç®¡ãæäŸããå ¬éããŒã¿ããŒã¹ã
- 倱å¹ãã蚌ææžã®ãªã¹ã â 倱å¹ããå ¬ééµã®ããžã¿ã«èšŒææžãå®å šã«ä¿ç®¡ããå ¬éããŒã¿ããŒã¹ (ãã¢ã®ç§å¯éµã®æŒæŽ©ãªã©ã«ãã)ã ã€ã³ãã©ã¹ãã©ã¯ãã£äž»äœã¯ããã®ããŒã¿ããŒã¹ã«åå¥ã«ã¢ã¯ã»ã¹ããããšããæ€èšŒããã»ã¹ãç°¡çŽ åããå°çšã®ãªã³ã©ã€ã³èšŒææžã¹ããŒã¿ã¹ ãããã³ã« (OCSP) ã䜿çšããããšãã§ããŸãã
- 蚌ææžã®ãŠãŒã¶ãŒ â CA ãšãŠãŒã¶ãŒå¥çŽãç· çµããããžã¿ã«çœ²åãæ€èšŒãã蚌ææžã®å ¬éããŒã«åºã¥ããŠããŒã¿ãæå·åããããµãŒãã¹ãæäŸãã PKI ãµããžã§ã¯ãã
- ãã©ãã¯ãŒ â 蚌ææžã®å ¬ééµãšãã¢ã«ãªã£ãç§å¯éµãææããŠãããCA ãšå å ¥è å¥çŽãçµãã§ãã PKI ãµããžã§ã¯ããæäŸããŸãã å å ¥è ã¯åæã«èšŒææžã®ãŠãŒã¶ãŒã«ãªãããšãã§ããŸãã
ãããã£ãŠãCAãCRããªãŒãã³ ãã£ã¬ã¯ããªãªã©ã®å ¬éã㌠ã€ã³ãã©ã¹ãã©ã¯ãã£ã®ä¿¡é Œã§ãããšã³ãã£ãã£ã¯ã次ã®è²¬ä»»ãè² ããŸãã
1. ç³è«è
ã®èº«å
ãæ¬ç©ã§ããããšã®ç¢ºèªã
2. å
¬ééµèšŒææžã®ãããã¡ã€ãªã³ã°ã
3. æ¬äººç¢ºèªã確å®ã«è¡ãããç³è«è
ã«å¯ŸããŠå
¬ééµèšŒææžãçºè¡ããã
4. å
¬ééµèšŒææžã®ã¹ããŒã¿ã¹ãå€æŽããŸãã
5. å
¬ééµèšŒææžã®çŸåšã®ã¹ããŒã¿ã¹ã«é¢ããæ
å ±ãæäŸããŸãã
PKI ã®æ¬ ç¹ã¯äœã§ãã?PKI ã®æ ¹æ¬çãªæ¬ é¥ã¯ãä¿¡é Œã§ãããšã³ãã£ãã£ãååšããããšã§ãã
ãŠãŒã¶ãŒã¯ CA ãš CR ãç¡æ¡ä»¶ã«ä¿¡é Œããå¿
èŠããããŸãã ããããå®è·µã瀺ãããã«ãç¡æ¡ä»¶ã®ä¿¡é Œã¯æ·±å»ãªçµæã䌎ããŸãã
éå» XNUMX 幎éããã®åéã§ã¯ã€ã³ãã©ã®è匱æ§ã«é¢é£ãã倧ããªã¹ãã£ã³ãã«ãããã€ããããŸããã
â 2010 幎ã«ãRealTek ãš JMicron ããçãã ããžã¿ã«èšŒææžã䜿çšããŠçœ²åããã Stuxnet ãã«ãŠã§ã¢ããªã³ã©ã€ã³ã§æ¡æ£ãå§ããŸããã
- 2017 幎ãGoogle ã¯ã·ãã³ããã¯ã倧éã®åœé 蚌ææžãçºè¡ãããšããŠéé£ããŸããã åœæãã·ãã³ããã¯ã¯çç£éã®ç¹ã§æ倧㮠CA ã® 70 ã€ã§ããã Google Chrome 1 ãã©ãŠã¶ã§ã¯ããã®äŒç€Ÿãšãã®é¢é£ã»ã³ã¿ãŒã§ãã GeoTrust ããã³ Thawte ãçºè¡ãã蚌ææžã®ãµããŒãã 2017 幎 XNUMX æ XNUMX æ¥ããåã«åæ¢ãããŸããã
CA ã䟵害ããããã®çµæãCA èªèº«ã ãã§ãªãããŠãŒã¶ãŒãå å
¥è
ãå«ããå
šå¡ã被害ãåããŸããã ã€ã³ãã©ã«å¯Ÿããä¿¡é Œã¯æãªãããŠããã ããã«ãããžã¿ã«èšŒææžã¯æ¿æ²»ççŽäºã®ç¶æ³ã§ãããã¯ãããå¯èœæ§ãããããããå€ãã®ãªãœãŒã¹ã®éçšã«åœ±é¿ãåãŒããŸãã ããã¯ãŸãã«ããã·ã¢å€§çµ±é æ¿æš©ãæ°å¹Žåã«æžå¿µããŠããããšã§ããã2016 幎ã«ã¯ãRuNet äžã®ãµã€ãã« SSL 蚌ææžãçºè¡ããåœå®¶èªèšŒã»ã³ã¿ãŒãèšç«ããå¯èœæ§ã«ã€ããŠè°è«ãããŸããã çŸåšã®æ
å¢ã¯ããã·ã¢ã®åœå®¶ããŒã¿ã«ããã
å¥ã®åé¡ããããŸã - 質å ãŠãŒã¶ãŒã®äžæ¬¡èªèšŒïŒèªèšŒïŒã å人çã«çŽæ¥é£çµ¡ããããšãªããCA ã«ããžã¿ã«èšŒææžã®çºè¡èŠæ±ãé£çµ¡ãããŠãŒã¶ãŒãç¹å®ããã«ã¯ã©ãããã°ããã§ãã? çŸåšãããã¯ã€ã³ãã©ã¹ãã©ã¯ãã£ã®æ©èœã«å¿ããŠç¶æ³ã«å¿ããŠè§£æ±ºãããŸãã ãªãŒãã³ã¬ãžã¹ã¿ãŒããäœããååŸãããŸã (ããšãã°ã蚌ææžãèŠæ±ããæ³äººã«é¢ããæ å ±)ãç³è«è ãå人ã®å Žåã¯ãéè¡å±ãŸãã¯éµäŸ¿å±ã䜿çšããããã¹ããŒããªã©ã®èº«å蚌ææžã䜿çšããŠèº«å ã確èªãããŸãã
ãªãããŸããç®çãšããè³æ Œæ å ±ã®åœé ã®åé¡ã¯æ ¹æ¬çãªãã®ã§ãã æ å ±çè«äžã®çç±ã«ããããã®åé¡ã«å¯Ÿããå®å šãªè§£æ±ºçã¯ãªãããšã«æ³šæããŠãã ãããã¢ããªãªãªã«ä¿¡é Œã§ããæ å ±ããªããã°ãç¹å®ã®äž»é¡ã®ä¿¡é Œæ§ã確èªãŸãã¯åŠå®ããããšã¯äžå¯èœã§ãã ååãšããŠãç³è«è ã®æ¬äººç¢ºèªãè¡ãããã«ã¯ãæ¬äººç¢ºèªæžé¡ã®æ瀺ãå¿ èŠãšãªããŸãã ããŸããŸãªæ€èšŒæ¹æ³ããããŸãããã©ããææžã®ä¿¡é Œæ§ãå®å šã«ä¿èšŒãããã®ã§ã¯ãããŸããã ãããã£ãŠãç³è«è ã®èº«å ã®ä¿¡é Œæ§ãä¿èšŒã§ããŸããã
ã©ãããã°ãããã®æ¬ ç¹ã解æ¶ã§ããã®ã§ããããïŒçŸç¶ã® PKI ã®åé¡ãéäžåã«ãã£ãŠèª¬æã§ããã®ã§ããã°ãåæ£åãç¹å®ãããæ¬ ç¹ãéšåçã«è§£æ¶ããã®ã«åœ¹ç«ã€ãšæ³å®ããã®ã¯è«ççã§ãã
åæ£åã¯ãä¿¡é Œã§ãããšã³ãã£ãã£ã®ååšãæå³ããŸããã åæ£åå ¬ééµã€ã³ãã©ã¹ãã©ã¯ã㣠(åæ£åå ¬ééµã€ã³ãã©ã¹ãã©ã¯ãã£ã DPKI) ã®å ŽåãCA ã CR ãå¿ èŠãããŸããã ããžã¿ã«èšŒææžã®æŠå¿µãæŸæ£ããåæ£ã¬ãžã¹ããªã䜿çšããŠå ¬éããŒã«é¢ããæ å ±ãä¿åããŠã¿ãŸãããã ç§ãã¡ã®å Žåããããã¯ãã§ãŒã³æè¡ã䜿çšããŠãªã³ã¯ãããåã ã®ã¬ã³ãŒã (ãããã¯) ã§æ§æãããç·åœ¢ããŒã¿ããŒã¹ãã¬ãžã¹ã¿ãŒãšåŒã³ãŸãã é»å蚌ææžã®ä»£ããã«ãéç¥ããšããæŠå¿µãå°å ¥ããŸãã
ææ¡ããã DPKI ã§ã¯ãéç¥ã®åä¿¡ãæ€èšŒããã£ã³ã»ã«ã®ããã»ã¹ã¯ã©ã®ããã«ãªããŸãã:
1. åç³è«è ã¯ãç»é²æã«ãã©ãŒã ã«èšå ¥ããŠéç¥ã®ç³è«ãåå¥ã«éä¿¡ãããã®åŸãå°çšã®ããŒã«ã«ä¿åããããã©ã³ã¶ã¯ã·ã§ã³ãäœæããŸãã
2. å ¬éããŒã«é¢ããæ å ±ã¯ãææè ã®è©³çŽ°ããã®ä»ã®ã¡ã¿ããŒã¿ãšãšãã«ãããžã¿ã«èšŒææžã§ã¯ãªãåæ£ã¬ãžã¹ããªã«ä¿åãããŸããéäžå PKI ã§ã®çºè¡ã¯ CA ãæ åœããŸãã
3. ç³è«è ã®èº«å ã®ä¿¡é Œæ§ã®æ€èšŒã¯ãCR ã§ã¯ãªããDPKI ãŠãŒã¶ãŒ ã³ãã¥ããã£ã®å ±åäœæ¥ã«ãã£ãŠäºåŸã«å®è¡ãããŸãã
4. ãã®ãããªéç¥ã®ææè ã®ã¿ãå ¬ééµã®ã¹ããŒã¿ã¹ãå€æŽã§ããŸãã
5. 誰ã§ãåæ£å°åž³ã«ã¢ã¯ã»ã¹ããå ¬ééµã®çŸåšã®ç¶æ ã確èªã§ããŸãã
泚: ã³ãã¥ããã£ã«ããç³è«è ã®èº«å 確èªã¯ãäžèŠãããšä¿¡é Œæ§ãäœãããã«æãããããããŸããã ããããä»æ¥ã§ã¯ããžã¿ã« ãµãŒãã¹ã®ãã¹ãŠã®ãŠãŒã¶ãŒãå¿ ç¶çã«ããžã¿ã« ãããããªã³ããæ®ãããã®ããã»ã¹ã¯ä»åŸãå¢ããå¢ãäžæ¹ã§ããããšãå¿ããŠã¯ãªããŸããã æ³äººã®ãªãŒãã³é»åç»é²ç°¿ãå°å³ãå°åœ¢ç»åã®ããžã¿ã«åããœãŒã·ã£ã« ãããã¯ãŒã¯ - ãããã¯ãã¹ãŠå ¬çã«å©çšå¯èœãªããŒã«ã§ãã ãããã¯ããžã£ãŒããªã¹ããšæ³å·è¡æ©é¢ã®äž¡æ¹ã«ããææ»äžã«ãã§ã«æåè£ã«äœ¿çšãããŠããŸãã ããšãã°ãããªã³ã°ãã£ããã®èª¿æ»ãããã¬ãŒã·ã¢ã®ããŒã€ã³ã°ç€Ÿå¢èœäºæ ã®ç¶æ³ã調æ»ããŠããå ±å調æ»ããŒã JITã®èª¿æ»ãæãåºãã ãã§ååã§ãã
ããã§ã¯ãåæ£åå ¬ééµã€ã³ãã©ã¹ãã©ã¯ãã£ã¯å®éã«ã¯ã©ã®ããã«æ©èœããã®ã§ãããã? ãã¯ãããžãŒèªäœã®èª¬æãèŠãŠã¿ãŸãããã 2018幎ã«ç¹èš±ãååŸ ãããŠç§ãã¡ã¯ãããç§ãã¡ã®ããŠããŠã§ãããšæ£åœã«èããŠããŸãã
å€ãã®å ¬éããŒãææããææè ãããŠãåããŒãã¬ãžã¹ããªã«ä¿åãããŠããç¹å®ã®ãã©ã³ã¶ã¯ã·ã§ã³ã§ãããšæ³åããŠãã ããã CA ãååšããªãå Žåããã¹ãŠã®ããŒããã®ç¹å®ã®ææè ã«å±ããŠããããšãã©ããã£ãŠç解ã§ããã§ãããã? ãã®åé¡ã解決ããããã«ãææè ãšãã®ãŠã©ã¬ããã«é¢ããæ å ±ãå«ããŒã ãã©ã³ã¶ã¯ã·ã§ã³ãäœæãããŸã (ãã©ã³ã¶ã¯ã·ã§ã³ãã¬ãžã¹ããªã«ç»é²ããããã®ææ°æã¯ããããåŒãèœãšãããŸã)ã null ãã©ã³ã¶ã¯ã·ã§ã³ã¯ãå ¬ééµã«é¢ããããŒã¿ãå«ãåŸç¶ã®ãã©ã³ã¶ã¯ã·ã§ã³ãæ¥ç¶ãããäžçš®ã®ãã¢ã³ã«ãŒãã§ãã ãã®ãããªåãã©ã³ã¶ã¯ã·ã§ã³ã«ã¯ãç¹æ®ãªããŒã¿æ§é ãã€ãŸãéç¥ãå«ãŸããŠããŸãã
éç¥ã¯ãæ©èœãã£ãŒã«ãã§æ§æãããææè ã®å ¬ééµã«é¢ããæ å ±ãå«ãæ§é åãããããŒã¿ã®ã»ããã§ããããã®æ°žç¶æ§ã¯ãåæ£ã¬ãžã¹ããªã®é¢é£ã¬ã³ãŒãã® XNUMX ã€ã«é 眮ããããšã«ãã£ãŠä¿èšŒãããŸãã
次ã®åœç¶ã®çåã¯ããŒããã©ã³ã¶ã¯ã·ã§ã³ã¯ã©ã®ããã«åœ¢æãããã®ããšããããšã§ãã null ãã©ã³ã¶ã¯ã·ã§ã³ã¯ãåŸç¶ã®ãã©ã³ã¶ã¯ã·ã§ã³ãšåæ§ã«ãXNUMX ã€ã®ããŒã¿ ãã£ãŒã«ãã®éåäœã§ãã ãŒããã©ã³ã¶ã¯ã·ã§ã³ã®åœ¢æäžã«ããŠã©ã¬ããã®ããŒãã¢ïŒå ¬éããŒãšãã¢ã®ç§å¯ããŒïŒãé¢ä¿ããŸãã ãã®ããŒã®ãã¢ã¯ããŠãŒã¶ãŒããŠã©ã¬ãããç»é²ããç¬éã«è¡šç€ºãããã¬ãžã¹ããªã«ãŒããã©ã³ã¶ã¯ã·ã§ã³ãé 眮ããææ°æãšããã®åŸã®éç¥ã䌎ãæäœã®ææ°æãããããåŒãèœãšãããŸãã
å³ã«ç€ºãããã«ãSHA256 ããã·ã¥é¢æ°ãš RIPEMD160 ããã·ã¥é¢æ°ãé ã«é©çšããããšã«ããããŠã©ã¬ããå
¬éã㌠ãã€ãžã§ã¹ããçæãããŸãã ããã§ãRIPEMD160 ã¯ãå¹
ã 160 ããããè¶
ããªãããŒã¿ã®ã³ã³ãã¯ããªè¡šçŸãæ
åœããŸãã ã¬ãžã¹ããªã¯å®äŸ¡ãªããŒã¿ããŒã¹ã§ã¯ãªããããããã¯éèŠã§ãã å
¬éããŒèªäœã¯ XNUMX çªç®ã®ãã£ãŒã«ãã«å
¥åãããŸãã æåã®ãã£ãŒã«ãã«ã¯ãåã®ãã©ã³ã¶ã¯ã·ã§ã³ãžã®æ¥ç¶ã確ç«ããããŒã¿ãå«ãŸããŸãã ãŒããã©ã³ã¶ã¯ã·ã§ã³ã®å Žåããã®ãã£ãŒã«ãã«ã¯äœãå«ãŸããªããããåŸç¶ã®ãã©ã³ã¶ã¯ã·ã§ã³ãšåºå¥ãããŸãã XNUMX çªç®ã®ãã£ãŒã«ãã¯ããã©ã³ã¶ã¯ã·ã§ã³ã®æ¥ç¶æ§ã確èªããããã®ããŒã¿ã§ãã ç°¡æœã«ããããã«ãæåãš XNUMX çªç®ã®ãã£ãŒã«ãã®ããŒã¿ãããããããªã³ã¯ããšããã§ãã¯ããšåŒã³ãŸãã 以äžã®å³ã® XNUMX çªç®ãš XNUMX çªç®ã®ãã©ã³ã¶ã¯ã·ã§ã³ããªã³ã¯ããããšã§ç€ºãããŠããããã«ããããã®ãã£ãŒã«ãã®å
容ã¯å埩ããã·ã¥ã«ãã£ãŠçæãããŸãã
æåã® XNUMX ã€ã®ãã£ãŒã«ãã®ããŒã¿ã¯ããŠã©ã¬ããã®ç§å¯ããŒã䜿çšããŠçæãããé»å眲åã«ãã£ãŠèšŒæãããŸãã
ããã§ãnull ãã©ã³ã¶ã¯ã·ã§ã³ãããŒã«ã«éä¿¡ãããæ€èšŒãæåããåŸã«ã¬ãžã¹ããªã«å ¥åãããŸãã ããã§ã次ã®ãã©ã³ã¶ã¯ã·ã§ã³ãããã«ããªã³ã¯ãã§ããããã«ãªããŸãã ãŒã以å€ã®ãã©ã³ã¶ã¯ã·ã§ã³ãã©ã®ããã«åœ¢æãããããèããŠã¿ãŸãããã
ããããæåã«ç®ãåŒãã®ã¯ãè±å¯ãªããŒãã¢ã§ãããã ãã§ã«ããªãã¿ã®ãŠã©ã¬ãã ã㌠ãã¢ã«å ããŠãéåžžã®ã㌠ãã¢ãšãµãŒãã¹ ã㌠ãã¢ã䜿çšãããŸãã
éåžžã®å ¬ééµããã¹ãŠã®å§ãŸãã§ãã ãã®ããŒã¯ãå€éšã®äžçã§å±éãããããŸããŸãªæé ãããã»ã¹ (éè¡ååŒããã®ä»ã®ååŒãææžã®æµããªã©) ã«é¢äžããŸãã ããšãã°ãéåžžã®ãã¢ã®ç§å¯éµã䜿çšããŠãæ¯æãåœä»€ãªã©ã®ããŸããŸãªææžã®ããžã¿ã«çœ²åãçæã§ããŸãããŸããå ¬ééµã¯ããã®åŸã®ãããã®åœä»€ã®å®è¡ã§ãã®ããžã¿ã«çœ²åãæ€èšŒããããã«äœ¿çšã§ããŸããæå¹ã§ãã
ãµãŒãã¹ ãã¢ã¯ãç»é²ããã DPKI ãµããžã§ã¯ãã«å¯ŸããŠçºè¡ãããŸãã ãã®ãã¢ã®ååã¯ãã®ç®çã«å¯Ÿå¿ããŠããŸãã ãŒããã©ã³ã¶ã¯ã·ã§ã³ã圢æ/ãã§ãã¯ããå ŽåããµãŒãã¹ããŒã¯äœ¿çšãããªãããšã«æ³šæããŠãã ããã
ããŒã®ç®çãããäžåºŠæ確ã«ããŸãããã
- ãŠã©ã¬ãã ããŒã¯ãnull ãã©ã³ã¶ã¯ã·ã§ã³ãšãã®ä»ã®é null ãã©ã³ã¶ã¯ã·ã§ã³ã®äž¡æ¹ãçæ/æ€èšŒããããã«äœ¿çšãããŸãã ãŠã©ã¬ããã®ç§å¯éµã¯ããŠã©ã¬ããã®ææè ã®ã¿ãç¥ã£ãŠããããŠã©ã¬ããã®ææè ã¯å€ãã®éåžžã®å ¬ééµã®ææè ã§ããããŸãã
- éåžžã®å ¬éããŒã¯ãéäžå PKI ã§èšŒææžãçºè¡ãããå ¬éããŒãšç®çã䌌ãŠããŸãã
- ãµãŒãã¹ ã㌠ãã¢ã¯ DPKI ã«å±ããŸãã ç§å¯ããŒã¯ç»é²ããããšã³ãã£ãã£ã«çºè¡ããããã©ã³ã¶ã¯ã·ã§ã³ (ãŒã ãã©ã³ã¶ã¯ã·ã§ã³ãé€ã) ã®ããžã¿ã«çœ²åãçæãããšãã«äœ¿çšãããŸãã Public ã¯ããã©ã³ã¶ã¯ã·ã§ã³ãã¬ãžã¹ããªã«ç»é²ãããåã«ããã©ã³ã¶ã¯ã·ã§ã³ã®é»åããžã¿ã«çœ²åãæ€èšŒããããã«äœ¿çšãããŸãã
ãããã£ãŠãããŒã«ã¯ XNUMX ã€ã®ã°ã«ãŒãããããŸãã XNUMX ã€ç®ã«ã¯ãµãŒãã¹ ããŒãšãŠã©ã¬ãã ããŒãå«ãŸããŸããããã㯠DPKI ã®ã³ã³ããã¹ãã§ã®ã¿æå³ãæã¡ãŸãã XNUMX çªç®ã®ã°ã«ãŒãã«ã¯éåžžã®ããŒãå«ãŸããŸãããã®ç¯å²ã¯ç°ãªãå ŽåããããããŒã䜿çšãããã¢ããªã±ãŒã·ã§ã³ ã¿ã¹ã¯ã«ãã£ãŠæ±ºå®ãããŸãã åæã«ãDPKI ã¯éåžžã®å ¬éããŒã®æŽåæ§ãšä¿¡é Œæ§ãä¿èšŒããŸãã
泚: ãµãŒãã¹ ã㌠ãã¢ã¯ãããŸããŸãª DPKI ãšã³ãã£ãã£ã«ç¥ãããŠããå¯èœæ§ããããŸãã ããšãã°ãããã¯èª°ã«ãšã£ãŠãåããããããŸããã ãã®ããããŒã以å€ã®åãã©ã³ã¶ã¯ã·ã§ã³ã®çœ²åãçæããéã«ã¯ XNUMX ã€ã®ç§å¯éµã䜿çšããããã®ãã¡ã® XNUMX ã€ã¯ãŠã©ã¬ããã®éµã§ãããã®éµã¯ãŠã©ã¬ããã®ææè ã®ã¿ãç¥ã£ãŠããããŠã©ã¬ããã®ææè ã¯å€ãã®éåžžã®ãã©ã³ã¶ã¯ã·ã§ã³ã®ææè ã§ããããŸããå ¬ééµã ãã¹ãŠã®ããŒã«ã¯ç¬èªã®æå³ããããŸãã ããšãã°ã眲åãã·ãŒã¯ã¬ãã ãµãŒãã¹ ããŒã§çæãããããããã©ã³ã¶ã¯ã·ã§ã³ãç»é²ããã DPKI ãµããžã§ã¯ãã«ãã£ãŠã¬ãžã¹ããªã«å ¥åãããããšãåžžã«èšŒæã§ããŸãã ãŸããææè ããã©ã³ã¶ã¯ã·ã§ã³ããšã«æéãæ¯æããããDOS æ»æãªã©ã®æªçšã¯ããåŸãŸããã
ãŒã 256 ã«ç¶ããã¹ãŠã®ãã©ã³ã¶ã¯ã·ã§ã³ã¯åæ§ã®æ¹æ³ã§åœ¢æãããŸããå ¬éã㌠(ãŒã ãã©ã³ã¶ã¯ã·ã§ã³ã®å Žåã®ããã«ãŠã©ã¬ããã§ã¯ãªããéåžžã®ã㌠ãã¢ãã) 㯠160 ã€ã®ããã·ã¥é¢æ° SHAXNUMX ãš RIPEMDXNUMX ãéããŠå®è¡ãããŸãã ãã®ããã«ããŠã第ïŒãã£ãŒã«ãã®ããŒã¿ã圢æãããã XNUMX çªç®ã®ãã£ãŒã«ãã«ã¯ãä»éæ å ± (ããšãã°ãçŸåšã®ã¹ããŒã¿ã¹ãæå¹æéãã¿ã€ã ã¹ã¿ã³ãã䜿çšãããæå·ã¢ã«ãŽãªãºã ã®èå¥åãªã©ã«é¢ããæ å ±) ãå«ãŸããŸãã XNUMX çªç®ã®ãã£ãŒã«ãã«ã¯ããµãŒãã¹ ã㌠ãã¢ã®å ¬éããŒãå«ãŸããŸãã ãã®å©ããåããŠãããžã¿ã«çœ²åããã§ãã¯ãããè€è£œãããŸãã ãã®ãããªã¢ãããŒãã®å¿ èŠæ§ãæ£åœåããŸãããã
ãã©ã³ã¶ã¯ã·ã§ã³ã¯ããŒã«ã«å ¥åãããåŠçããããŸã§ããã«ä¿ç®¡ãããããšãæãåºããŠãã ããã ããŒã«ãžã®ä¿åã«ã¯ããã©ã³ã¶ã¯ã·ã§ã³ ããŒã¿ãæ¹ãããããå¯èœæ§ããããšããç¹å®ã®ãªã¹ã¯ã䌎ããŸãã ææè ã¯ååŒããŒã¿ãé»åããžã¿ã«çœ²åã§èšŒæããŸãã ãã®ããžã¿ã«çœ²åãæ€èšŒããããã®å ¬éããŒã¯ããã©ã³ã¶ã¯ã·ã§ã³ ãã£ãŒã«ãã® XNUMX ã€ã«æ瀺çã«æå®ããããã®åŸã¬ãžã¹ããªã«å ¥åãããŸãã ãã©ã³ã¶ã¯ã·ã§ã³åŠçã®ç¹åŸŽã¯ãæ»æè ãç¬èªã®è£éã§ããŒã¿ãå€æŽããç§å¯éµã䜿çšããŠãããæ€èšŒãããã©ã³ã¶ã¯ã·ã§ã³å ã®ããžã¿ã«çœ²åãæ€èšŒããããã®ãã¢ã®å ¬ééµã瀺ãããšãã§ããããšã§ãã ããžã¿ã«çœ²åã®ã¿ã«ãã£ãŠçæ£æ§ãšå®å šæ§ãä¿èšŒãããå Žåããã®ãããªåœé ã¯æ°ã¥ãããªãã§ãããã ãã ããããžã¿ã«çœ²åã«å ããŠãä¿åãããæ å ±ã®ã¢ãŒã«ã€ããšæ°žç¶æ§ã®äž¡æ¹ãä¿èšŒããè¿œå ã®ã¡ã«ããºã ãããã°ãåœé ãæ€åºã§ããŸãã ãããè¡ãã«ã¯ãææè ã®æ¬ç©ã®å ¬éããŒãã¬ãžã¹ããªã«å ¥åããã ãã§ååã§ãã ãããã©ã®ããã«æ©èœãããã説æããŸãããã
æ»æè ã«ãã©ã³ã¶ã¯ã·ã§ã³ ããŒã¿ãåœé ãããŸãã ããŒãšããžã¿ã«çœ²åã®èŠ³ç¹ããã¯ã次ã®ãªãã·ã§ã³ãå¯èœã§ãã
1. æ»æè
ã¯ãææè
ã®ããžã¿ã«çœ²åãå€æŽããã«ããã©ã³ã¶ã¯ã·ã§ã³ã«èªåã®å
¬éããŒãé
眮ããŸãã
2. æ»æè
ã¯èªåã®ç§å¯éµã«ããžã¿ã«çœ²åãäœæããŸãããææè
ã®å
¬ééµã¯å€æŽããªããŸãŸã«ããŸãã
3. æ»æè
ã¯ç§å¯éµã«ããžã¿ã«çœ²åãäœæãããã¢ã«ãªã£ãå
¬ééµããã©ã³ã¶ã¯ã·ã§ã³ã«é
眮ããŸãã
æããã«ããªãã·ã§ã³ 1 ãš 2 ã¯ããžã¿ã«çœ²åã®æ€èšŒäžã«åžžã«æ€åºããããããç¡æå³ã§ãã ãªãã·ã§ã³ 3 ã®ã¿ãæå³ãæã¡ãæ»æè ãèªåã®ç§å¯éµã«ããžã¿ã«çœ²åã圢æããå Žåãææè ã®å ¬ééµãšã¯ç°ãªããã¢ã®å ¬ééµããã©ã³ã¶ã¯ã·ã§ã³å ã«ä¿åããå¿ èŠããããŸãã ããã¯ãæ»æè ãæ¹ãããããããŒã¿ãæŒã蟌ãå¯äžã®æ¹æ³ã§ãã
ææè ãåºå®ã®ããŒã®ã㢠(ç§å¯éµãšå ¬ééµ) ãæã£ãŠãããšä»®å®ããŸãã ãã®ãã¢ã®ç§å¯éµã䜿çšããŠããŒã¿ãããžã¿ã«çœ²åã«ãã£ãŠèªèšŒãããšãå ¬ééµããã©ã³ã¶ã¯ã·ã§ã³ã«ç€ºãããŸãã ãŸãããã®å ¬éããŒã以åã«ã¬ãžã¹ããªã«å ¥åãããŠããããã®ä¿¡é Œæ§ã確å®ã«æ€èšŒãããŠãããšä»®å®ããŸãã ãã®å Žåããã©ã³ã¶ã¯ã·ã§ã³ã®å ¬éããŒãã¬ãžã¹ããªã®å ¬éããŒãšäžèŽããªããšããäºå®ã«ãã£ãŠãåœé ã瀺ãããŸãã
åèšããŸãããã ææè ã®æåã®ååŒããŒã¿ãåŠçãããšãã¯ãã¬ãžã¹ããªã«å ¥åãããå ¬éããŒã®ä¿¡é Œæ§ãæ€èšŒããå¿ èŠããããŸãã ãããè¡ãã«ã¯ãã¬ãžã¹ããªããããŒãèªã¿åããã»ãã¥ãªãã£å¢ç (çžå¯Ÿçã«è匱ãªé å) å ã®ææè ã®çã®å ¬éããŒãšæ¯èŒããŸãã ããŒã®ä¿¡é Œæ§ã確èªãããé 眮æã«ãã®æ°žç¶æ§ãä¿èšŒãããŠããå ŽåãåŸç¶ã®ãã©ã³ã¶ã¯ã·ã§ã³ããã®ããŒã®ä¿¡é Œæ§ã¯ãã¬ãžã¹ããªããã®ããŒãšæ¯èŒããããšã§ç°¡åã«ç¢ºèª/åé§ã§ããŸãã ã€ãŸããã¬ãžã¹ããªã®ããŒãåç §ãµã³ãã«ãšããŠäœ¿çšãããŸãã ä»ã®ãã¹ãŠã®ææè ã®ãã©ã³ã¶ã¯ã·ã§ã³ãåæ§ã«åŠçãããŸãã
ãã©ã³ã¶ã¯ã·ã§ã³ã¯é»åããžã¿ã«çœ²åã«ãã£ãŠèšŒæãããŸããããã§ç§å¯ããŒãå¿ èŠã«ãªããŸãããµãŒãã¹ ããŒãšãŠã©ã¬ãã ããŒã® XNUMX ã€ã§ã¯ãªããäžåºŠã« XNUMX ã€å¿ èŠã§ãã XNUMX ã€ã®ç§å¯ããŒã®äœ¿çšã«ãããå¿ èŠãªã¬ãã«ã®ã»ãã¥ãªãã£ã確ä¿ãããŸããçµå±ã®ãšããããµãŒãã¹ç§å¯ããŒã¯ä»ã®ãŠãŒã¶ãŒã«ç¥ãããå¯èœæ§ããããŸããããŠã©ã¬ããã®ç§å¯ããŒã¯éåžžã®ã㌠ãã¢ã®ææè ã®ã¿ã«ç¥ãããŸãã ãã®ãã㪠XNUMX ã€ã®ããŒã®çœ²åããçµ±åãããžã¿ã«çœ²åãšåŒã³ãŸããã
é null ãã©ã³ã¶ã¯ã·ã§ã³ã®æ€èšŒã¯ããŠã©ã¬ãããšãµãŒãã¹ ããŒãšãã XNUMX ã€ã®å ¬éããŒã䜿çšããŠå®è¡ãããŸãã æ€èšŒããã»ã¹ã¯ XNUMX ã€ã®äž»èŠãªæ®µéã«åããããšãã§ããŸããXNUMX ã€ç®ã¯ãŠã©ã¬ããã®å ¬éããŒã®ãã€ãžã§ã¹ãããã§ãã¯ããããšã§ãXNUMX ã€ç®ã¯ãã©ã³ã¶ã¯ã·ã§ã³ã®é»åããžã¿ã«çœ²åããã§ãã¯ããããšã§ãããã©ã³ã¶ã¯ã·ã§ã³ã®é»åããžã¿ã«çœ²åã¯ãXNUMX ã€ã®ç§å¯ããŒã䜿çšããŠåœ¢æããããã®ãšåãçµ±åããããã®ã§ã (ãŠã©ã¬ãããšãµãŒãã¹ïŒã ããžã¿ã«çœ²åã®æå¹æ§ã確èªãããå Žåãè¿œå ã®æ€èšŒã®åŸããã©ã³ã¶ã¯ã·ã§ã³ãç»é²ãããŸãã
è«ççãªçåãçãããããããŸããããã©ã³ã¶ã¯ã·ã§ã³ããŒã ãã©ã³ã¶ã¯ã·ã§ã³ã®åœ¢åŒã§ãã«ãŒãããæã€ç¹å®ã®ãã§ãŒã³ã«å±ããŠãããã©ããã確èªããã«ã¯ã©ãããã°ããã§ããããã ãã®ç®çã®ããã«ãæ€èšŒããã»ã¹ã«ãã XNUMX ã€ã®æ®µéã§ããæ¥ç¶ãã§ãã¯ãè¿œå ãããŸãã ããã§ã¯ããããŸã§ç¡èŠããŠããæåã® XNUMX ã€ã®ãã£ãŒã«ãã®ããŒã¿ãå¿
èŠã«ãªããŸãã
ãã©ã³ã¶ã¯ã·ã§ã³ No. 3 ãå®éã«ãã©ã³ã¶ã¯ã·ã§ã³ No. 2 ã®åŸã«æ¥ããã©ããã確èªããå¿ èŠããããšæ³åããŠã¿ãŸãããã ãããè¡ãã«ã¯ãçµåããã·ã¥æ³ã䜿çšããŠããã©ã³ã¶ã¯ã·ã§ã³ No. 2 ã® 3 çªç®ã2 çªç®ãããã³ 256 çªç®ã®ãã£ãŒã«ãã®ããŒã¿ã®ããã·ã¥é¢æ°å€ãèšç®ããŸãã 次ã«ããã©ã³ã¶ã¯ã·ã§ã³ No.160 ã®æåã®ãã£ãŒã«ãã®ããŒã¿ãšã以åã«ååŸãããã©ã³ã¶ã¯ã·ã§ã³ No.2 ã® XNUMXãXNUMXãXNUMX ãã£ãŒã«ãã®ããŒã¿ã®çµåããã·ã¥é¢æ°å€ã®é£çµãå®è¡ãããŸãã ããããã¹ãŠã¯ãXNUMX ã€ã®ããã·ã¥é¢æ° SHAXNUMX ãš RIPEMDXNUMX ã«ãã£ãŠãå®è¡ãããŸãã åä¿¡ããå€ããã©ã³ã¶ã¯ã·ã§ã³çªå· XNUMX ã® XNUMX çªç®ã®ãã£ãŒã«ãã®ããŒã¿ãšäžèŽããå Žåããã§ãã¯ã«åæ Œããæ¥ç¶ã確èªãããŸãã ããã¯ã以äžã®å³ã§ããæ確ã«ç€ºãããŠããŸãã
倧ãŸãã«èšããšãéç¥ãçæããŠã¬ãžã¹ã¿ã«å
¥åãããã¯ãããžãŒã¯æ¬¡ã®ããã«ãªããŸãã 次ã®å³ã¯ãéç¥ãã§ãŒã³ã圢æããããã»ã¹ãèŠèŠçã«ç€ºããŠããŸãã
ãã®ããã¹ãã§ã¯ãééããªãååšãã詳现ã«ã€ããŠã¯è§Šãããåæ£åå
¬ééµã€ã³ãã©ã¹ãã©ã¯ãã£ã®ã¢ã€ãã¢ãã®ãã®ã®è°è«ã«æ»ããŸãã
ãããã£ãŠãç³è«è èªèº«ãéç¥ã®ç»é²ç³è«ãæåºããéç¥ã¯ CA ããŒã¿ããŒã¹ã§ã¯ãªãã¬ãžã¹ããªã«ä¿åããããããDPKI ã®äž»èŠãªã¢ãŒããã¯ã㣠ã³ã³ããŒãã³ããèæ ®ããå¿ èŠããããŸãã
1. æå¹ãªéç¥ïŒRDNïŒãç»é²ããŸãã
2. åãæ¶ãããéç¥ïŒRONïŒã®ç»é²ã
3. ä¿çéç¥ïŒRPNïŒã®ç»é²ã
å ¬ééµã«é¢ããæ å ±ã¯ãããã·ã¥é¢æ°å€ã®åœ¢åŒã§ RDN/RON/RPN ã«ä¿åãããŸãã ãŸããéåžžã®å ¬ééµã®ã¹ããŒã¿ã¹ (倱å¹ãäžæåæ¢ãªã©) ã«é¢ããæ å ±ãã¬ãžã¹ããªã«å ¥åãããå Žåããããã¯ç°ãªãã¬ãžã¹ããªãç°ãªããã§ãŒã³ããŸãã¯åäžã®ã¬ãžã¹ããªã®äžéšãšããŠã® XNUMX ã€ã®ãã§ãŒã³ã®ããããã«ãªãå¯èœæ§ãããããšã«ã泚æããŠãã ããã察å¿ããã³ãŒãå€ã®åœ¢åŒã®ããŒã¿æ§é ã® XNUMX çªç®ã®ãã£ãŒã«ãã DPKI ã®ã¢ãŒããã¯ãã£å®è£ ã«ã¯ããŸããŸãªãªãã·ã§ã³ããããã©ã¡ããéžæãããã¯ãå ¬ééµãä¿åããããã®é·æã¡ã¢ãªã®ã³ã¹ããªã©ã®æé©ååºæºãªã©ãããŸããŸãªèŠå ã«ãã£ãŠæ±ºãŸããŸãã
ãããã£ãŠãDPKI ã¯ãã¢ãŒããã¯ãã£ã®è€éãã®ç¹ã§ãåçŽã§ã¯ãªãã«ããŠããå°ãªããšãéäžåãœãªã¥ãŒã·ã§ã³ãšåçã§ããããšãå€æããå¯èœæ§ããããŸãã
äž»ãªçåã¯æ®ã£ãŠããŸã - ãã®ãã¯ãããžãŒã®å®è£ ã«ã¯ã©ã®ã¬ãžã¹ããªãé©ããŠããŸãã?
ã¬ãžã¹ããªã®äž»ãªèŠä»¶ã¯ãããããçš®é¡ã®ãã©ã³ã¶ã¯ã·ã§ã³ãçæã§ããããšã§ãã å°åž³ã®æãæåãªäŸã¯ããããã³ã€ã³ ãããã¯ãŒã¯ã§ãã ããããäžã§èª¬æãããã¯ãããžãå®è£ ããå Žåãæ¢åã®ã¹ã¯ãªããèšèªã®å¶éãä»»æã®ããŒã¿ ã»ãããåŠçããããã«å¿ èŠãªã¡ã«ããºã ã®æ¬ åŠãä»»æã®ã¿ã€ãã®ãã©ã³ã¶ã¯ã·ã§ã³ãçæããæ¹æ³ãªã©ãç¹å®ã®å°é£ãçããŸãã
ç§ãã¡ ENCRY ã¯ãäžã§å®åŒåããåé¡ã解決ããããšè©Šã¿ãã¬ãžã¹ããªãéçºããŸãããç§ãã¡ã®æèŠã§ã¯ãããã«ã¯æ¬¡ã®ãããªå€ãã®å©ç¹ããããŸãã
- ããã€ãã®ã¿ã€ãã®ãã©ã³ã¶ã¯ã·ã§ã³ããµããŒãããŸããè³ç£ã亀æãã (ã€ãŸããéèãã©ã³ã¶ã¯ã·ã§ã³ãå®è¡ãã) ããšããä»»æã®æ§é ã§ãã©ã³ã¶ã¯ã·ã§ã³ãäœæããããšãã§ããŸãã
- éçºè ã¯ãããŸããŸãªæè¡çåé¡ã解決ããéã«å¿ èŠãªæè»æ§ãæäŸããç¬èªã®ããã°ã©ãã³ã°èšèª PrismLang ã«ã¢ã¯ã»ã¹ã§ããŸãã
- ä»»æã®ããŒã¿ã»ãããåŠçããã¡ã«ããºã ãæäŸãããŸãã
åçŽåãããã¢ãããŒããæ¡çšãããšã次ã®äžé£ã®ã¢ã¯ã·ã§ã³ãå®è¡ãããŸãã
- ç³è«è 㯠DPKI ã«ç»é²ããããžã¿ã« ãŠã©ã¬ãããåãåããŸãã ãŠã©ã¬ããã¢ãã¬ã¹ã¯ãŠã©ã¬ããã®å ¬ééµã®ããã·ã¥å€ã§ãã ãŠã©ã¬ããã®ç§å¯éµã¯ç³è«è ã®ã¿ãç¥ã£ãŠããŸãã
- ç»é²ããããµããžã§ã¯ãã«ã¯ããµãŒãã¹ç§å¯ããŒãžã®ã¢ã¯ã»ã¹ãäžããããŸãã
- ãµããžã§ã¯ãã¯ãŒããã©ã³ã¶ã¯ã·ã§ã³ãçæãããŠã©ã¬ããã®ç§å¯ããŒã䜿çšããããžã¿ã«çœ²åã§ãããæ€èšŒããŸãã
- ãŒã以å€ã®ãã©ã³ã¶ã¯ã·ã§ã³ã圢æãããå ŽåããŠã©ã¬ãããšãµãŒãã¹ã® XNUMX ã€ã®ç§å¯éµã䜿çšããé»åããžã¿ã«çœ²åã«ãã£ãŠèšŒæãããŸãã
- ãµããžã§ã¯ãã¯ãã©ã³ã¶ã¯ã·ã§ã³ãããŒã«ã«éä¿¡ããŸãã
- ENCRY ãããã¯ãŒã¯ ããŒãã¯ãããŒã«ãããã©ã³ã¶ã¯ã·ã§ã³ãèªã¿åããããžã¿ã«çœ²åãšãã©ã³ã¶ã¯ã·ã§ã³ã®æ¥ç¶æ§ããã§ãã¯ããŸãã
- ããžã¿ã«çœ²åãæå¹ã§æ¥ç¶ã確èªãããå Žåã¯ããã©ã³ã¶ã¯ã·ã§ã³ãã¬ãžã¹ã¿ãŒã«ç»é²ããæºåãæŽããŸãã
ããã§ãã¬ãžã¹ããªã¯ãæå¹ãªéç¥ããã£ã³ã»ã«ãããéç¥ãããã³äžæåæ¢ãããéç¥ã«é¢ããæ å ±ãä¿åããåæ£ããŒã¿ããŒã¹ãšããŠæ©èœããŸãã
ãã¡ãããå°æ¹åæš©ã¯äžèœè¬ã§ã¯ãããŸããã ãã©ã€ã㪠ãŠãŒã¶ãŒèªèšŒã®æ ¹æ¬çãªåé¡ã¯ã©ãã«ãæ¶ããŸãããçŸåšãç³è«è ã®æ€èšŒã CR ã«ãã£ãŠå®è¡ãããŠããå ŽåãDPKI ã§ã¯æ€èšŒãã³ãã¥ãã㣠ã¡ã³ããŒã«å§ä»»ããçµæžçåæ©ãå©çšããŠæŽ»åãåºæ¿ããããšãææ¡ãããŠããŸãã ãªãŒãã³ãœãŒã¹ã®æ€èšŒæè¡ã¯ããç¥ãããŠããŸãã ãã®ãããªæ€èšŒã®æå¹æ§ã¯å®éã«ç¢ºèªãããŠããŸãã ãªã³ã©ã€ã³åºçç©ããªã³ã°ãã£ããã«ããæ°å€ãã®æ³šç®ãéãã調æ»ãããäžåºŠæãåºããŠã¿ãŸãããã
ãããäžè¬ã«ã次ã®ãããªã€ã¡ãŒãžãæµ®ãã³äžãããŸããDPKI ã¯ããã¹ãŠã§ã¯ãªãã«ãããéäžå PKI ã®æ¬ ç¹ã®å€ããä¿®æ£ããæ©äŒã§ãã
Habrablog ã賌èªããŠãã ãããä»åŸãç 究éçºãç©æ¥µçã«åãäžããŠãããŸãã®ã§ããã©ããŒããŠãã ããã
åºæïŒ habr.com