Sie sind auf Seite 1von 9

Message Message

“Secret”
Key
ENCRYPT DECRYPT

(LOCK) (UNLOCK)
(Sender) (Receiver)
Ciphertext Ciphertext
• Digital Identity that establishes your
credentials when doing business or other
transactions on the Web

• Issued by a Certifying Authority (CA)

• Contains your name, serial number,


expiration dates, public key, signature of CA
 Trusted Third Party
 An organization which issues public key
certificates
 Assures the identity of the parties to whom
it issues certificates
 Maintains online access to the public key
certificates issued
User Certificate

Serial No.
Certificate
User
User Name Database
Name &
other
credentials Signed User’s Email
Signed Address
by using
Certificate by using
CA’s
License issued
CA’s Publish by CCA
Request private User’s
private Public Key
User’s key User 1 certificate
key
Public CA’s Name
key User 2 certificate
Certificate .
Class
Public
Public
Private Validity Web site of CA
Digital
Signature
Key pair of CA
Generation
 Uses secure hash algorithm
 Condenses message to 160 bit
 Key size 512-1024 bits
 Proposed by NIST in 1991
 Adopted
Paper signatures v/s Digital Signatures

Parameter Paper Electronic


May be forged Can not be copied
Authenticity

Signature Signature depends


V/s Integrity independent of the on the contents of
document the document

a. Handwriting a. Any computer


Non- expert needed user
repudiation b. Error prone b. Error free

Das könnte Ihnen auch gefallen