翻訳と辞書
Words near each other
・ Roboticist
・ Robotics
・ Robotics Certification Standards Alliance
・ Robotics conventions
・ Robotics Design Inc
・ Robotics Institute
・ Robotics middleware
・ Robotics simulator
・ Robotics Society of India
・ Robotics suite
・ Robotics Toolbox for MATLAB
・ Robotics;Notes
・ Robot Building
・ Robot calibration
・ Robot Carnival
Robot certificate authority
・ Robot Chicken
・ Robot Chicken (season 1)
・ Robot Chicken (season 2)
・ Robot Chicken (season 3)
・ Robot Chicken (season 4)
・ Robot Chicken (season 5)
・ Robot Chicken (season 6)
・ Robot Chicken (season 7)
・ Robot Chicken (season 8)
・ Robot Chicken DC Comics Special
・ Robot City
・ Robot City (video game)
・ Robot combat
・ Robot Combat League


Dictionary Lists
翻訳と辞書 辞書検索 [ 開発暫定版 ]
スポンサード リンク

Robot certificate authority : ウィキペディア英語版
Robot certificate authority

A robot certificate authority is a certificate authority (CA) which automatically signs public keys which match some requirement.
Typically Robot CAs are set up to validate that the public key belonging to an e-mail address does actually belong to the e-mail address. This is achieved by the Robot CA signing each uid on the public key and sending the signed copy to the e-mail address, encrypted with the public key. If the public key belongs to whoever reads the e-mail address, they receive the signed copy, can decrypt it and then publish it to the public key servers. If the public key does not belong to whoever reads the e-mail address, they are unable to decrypt the encrypted key, but the accompanying message gives them sufficient information to let them know that that someone is attempting to impersonate them.
Robot CAs are considered significantly less secure than other CAs, which typically require multiple forms of photograph identification. In particular most robot CAs are only as strong as the underlying e-mail infrastructure: anyone who can read another person's mail can impersonate them and anyone who can read and delete another person's e-mail can get the signature without the person knowing if they don't read their e-mail at exactly the right time or the impostor prevents the signature e-mail from being seen. Robot CAs also offer no evidence as to the real identity of an OpenPGP user, merely their e-mail address. All well behaved Robot CAs use a signature policy URL, which is the URL of the policy under which the keys are signed.
A Robot CA also has the side effect of serving as a time stamp server for keys because a time stamp is included in the signature added to the key. The signature is evidence that the key existed and was in use at a certain point in time.
==See also==

*CAcert
*Let's Encrypt
*Web of trust

抄文引用元・出典: フリー百科事典『 ウィキペディア(Wikipedia)
ウィキペディアで「Robot certificate authority」の詳細全文を読む



スポンサード リンク
翻訳と辞書 : 翻訳のためのインターネットリソース

Copyright(C) kotoba.ne.jp 1997-2016. All Rights Reserved.