电信科学 ›› 2020, Vol. 36 ›› Issue (11): 98-103.doi: 10.11959/j.issn.1000-0801.2020292

• 专栏:信息安全 • 上一篇    下一篇

公钥密码基础设施在电信运营商的应用

王聪丽1,2,王锦华1,2,薛伟佳1,2   

  1. 1 中国电信股份有限公司研究院,上海 201315
    2 移动互联网系统与应用安全国家工程实验室,上海 201315
  • 修回日期:2020-11-13 出版日期:2020-11-20 发布日期:2020-12-09
  • 作者简介:王聪丽(1994- ),女,中国电信股份有限公司研究院工程师,移动互联网系统与应用安全国家工程实验室工程师,主要研究方向为密码应用安全、公钥基础设施等|王锦华(1982- ),男,中国电信股份有限公司研究院工程师,移动互联网系统与应用安全国家工程实验室工程师,主要研究方向为云计算、大数据安全、终端安全、密码应用等|薛伟佳(1990- ),女,博士,中国电信股份有限公司研究院工程师,移动互联网系统与应用安全国家工程实验室工程师,主要研究方向为密码学、物联网安全、数据安全等

Application of public key infrastructure in telecom operators

Congli WANG1,2,Jinhua WANG1,2,Weijia XUE1,2   

  1. 1 Research Institute of China Telecom Co.,Ltd.,Shanghai 201315,China
    2 Mobile Internet System and Application Security National Engineering Laboratory,Shanghai 201315,China
  • Revised:2020-11-13 Online:2020-11-20 Published:2020-12-09

摘要:

随着密码法的实施,我国将信息系统密码应用提升到了法律层面,要求加强公钥基础设施在网络实体互通互信方面的应用。提出了一种采用严格层次结构建设统一电信公钥基础设施的方案,即建立一个全国电信运营商根CA作为信任锚,而各大电信运营商成为独立的子CA,形成“全国电信运营商根CA-电信运营商子CA”的证书信任链,提供PKI安全服务。该方案不仅可以实现电信运营商CA之间的互通互认,也有利于统一电信公钥基础设施成为全球范围信任的电子认证服务提供商,进而在国际证书标准制定上有更大的影响力和话语权。

关键词: 公钥基础设施, 数字证书, 电信运营商, 互联互通

Abstract:

With the implementation of cryptography law,the application of cryptography in information system in China has been promoted to the legal level,which requires the application of public key infrastructure in the mutual trust of network entities to be strengthened.A scheme of constructing unified telecom public key infrastructure with strict hierarchical structure was proposed,that is,establishing a national telecom root CA as a trust anchor,and each major telecom operator becomes an independent sub-ca,forming a certificate trust chain of “national telecom root CA- telecom operator sub-ca” and providing PKI security services.This scheme can not only realize the mutual recognition between telecom operators,but also help unify the telecom public key infrastructure to become a globally trusted electronic authentication service provider,so as to have more influence and say in the formulation of international certification standards.

Key words: public key infrastructure, digital certificate, telecom operator, connectivity

中图分类号: 

No Suggested Reading articles found!