Á¦Ç°°³¿ä±¸¼º ¹× ±â´É Ư¡ ¹× Àû¿ëºÐ¾ß ¿î¿µÈ¯°æ

¡®KSignCASE(KSign Certificate API for Secuire Environment)¡¯´Â API(Application Program Interface) °ø°³Å°±â¹Ý±¸Á¶(PKI)ÇÏ¿¡¼­ ÀüÀÚ¼­¸í ¹× º¸¾È Åë½ÅÀ» À§ÇÑ ¾Ïȣȭ ¶óÀ̺귯¸®ÀÔ´Ï´Ù.
¸ðµç APIµéÀÇ Ã³¸®°úÁ¤°ú ÇÁ·ÎÅäÄÝÀÌ RFC series, PKCS Series µî ±¹Á¦Ç¥ÁØÀ» ±â¹ÝÀ¸·Î °³¹ßµÇ¾ú±â ¶§¹®¿¡ ¾ÈÁ¤¼ºÀÌ ³ô°í ¿¬µ¿ÀÌ ½±½À´Ï´Ù.



°øÁ߸ÁÀ» ÀÌ¿ëÇÏ´Â ÀÎÅÍ³Ý È¯°æ¿¡¼­ »ç¿ëÀÚ¿¡ ´ëÇÑ ÀÍ¸í¼º¿¡ µû¶ó¼­ »ç¿ëÀÚÀÇ ½Å·Ú°¡ ºÒ°¡´ÉÇϱ⠶§¹®¿¡ ÀüÀÚ»ó°Å·¡³ª ÀÎÅÍ³Ý ¼­ºñ½º¿¡¼­ÀÇ »ç¿ëÀÚ È®ÀÎ ¹× Æ®·£Àè¼Ç¿¡ ´ëÇÑ ½Å·Ú°¡ ¾î·Á¿ö ¹ýÀû ºÐÀï°ú °¢Á¾ ÇØÅ· ¹®Á¦·Î ÀÎÇÑ »ç°í°¡ ¸¹ÀÌ ¹ß»ýÇÏ¿© ÀÌ¿¡ ´ëÇÑ ´ëÃ¥ÀÌ °­Á¶µÇ°í ÀÖ½À´Ï´Ù.

PKIÀÀ¿ëº¸¾ÈŸŶÀÎ ¡®KSignCASE(KSign Certificate API for Secure Environment)¡¯´Â PKI(Public Key Infrastructure;°ø°³Å°±â¹Ý±¸Á¶) ±â¹ÝÀÇ ÀÎÅͳݹðÅ·, ¿Â¶óÀÎÁõ±Ç°Å·¡, ÇàÁ¤¹Î¿øÃ³¸®, Á¾ÇÕÁ¤º¸½Ã½ºÅÛ, ÀüÀÚ»ó°Å·¡ µî ´Ù¾çÇÑ À¯/¹«¼± ÀÎÅÍ³Ý È¯°æ¿¡¼­ Á¤º¸ º¸¾È ¼­ºñ½º¸¦ Á¦°øÇϰí ÀÖ½À´Ï´Ù.
¡®KSignCASE¡¯´Â ÀÎÁõ¼­ ¹ß±Þ ¹× °ü¸®, ÀÎÁõ¼­ °ËÁõ, ÆÄÀÏ ¹× ¸Þ½ÃÁö µ¥ÀÌÅÍ ¾Ï/º¹È£È­, ºñ¹ÐŰ/°ø°³Å°ÀÇ Å°½Ö »ý¼º, ¸Þ½ÃÁö ÀüÀÚ¼­¸í ¹× °ËÁõ µî¿¡ ÀÌ¿ëµÉ ¼ö ÀÖµµ·Ï API (Application Program Interface;ÀÀ¿ëÇÁ·Î±×·¥ ÀÎÅÍÆäÀ̽º) ¶óÀ̺귯¸® Çü½ÄÀ¸·Î Á¦°øµË´Ï´Ù.
¶ÇÇÑ ´Ù¾çÇÑ ½Ã½ºÅÛ°ú ´Ù¾çÇÑ ¾ð¾î¿¡ ½±°Ô Àû¿ëÇÒ ¼ö ÀÖµµ·Ï ´Ù¾çÇÑ Ç÷§Æû ȯ°æ(HP, SUN, IBM, Windows, Linux)À» Áö¿øÇϰí ÀÀ¿ëÇÏ±â Æí¸®ÇÏ¸ç °¡Àå ¸¹ÀÌ »ç¿ëµÇ´Â ¾ð¾î(C/C++, Java)¸¦ Áö¿øÇϰí ÀÖ½À´Ï´Ù.

ƯÈ÷ ¸ðµç APIµéÀÇ Ã³¸®°úÁ¤°ú ÇÁ·ÎÅäÄÝÀº ±¹Á¦Ç¥ÁØ(RFC Series, PKCS Series µî)À» ±â¹ÝÀ¸·Î °³¹ßµÇ¾ú±â ¶§¹®¿¡ ¾ÈÀü¼ºÀÌ ³ô°í ¿¬µ¿ÀÌ ½±½À´Ï´Ù. ¡®KSignCASE¡¯´Â PKIÀÀ¿ëÇÁ·Î±×·¥À» °³¹ßÇÒ °æ¿ì ÃÖÀûÀÇ È¯°æÀ» Á¦°øÇϰí ÀÖ½À´Ï´Ù. ¡®KSignCASE¡¯¸¦ Àû¿ëÇÔÀ¸·Î¼­ »ç¿ëÀÚ ¹× ¼­¹ö¸¦ ½Å·ÚÇÒ ¼ö Àִ ȯ°æÀ» Á¦°øÇÏ¸ç »ç¿ëÀÚ¿Í ¼­¹ö°£¿¡ ÁÖ°í¹Þ´Â µ¥ÀÌÅ͸¦ º¸´Ù ¾ÈÀüÇÏ°Ô º¸È£ÇÒ ¼ö ÀÖ´Â ÀÎÅÍ³Ý ¼­ºñ½º ȯ°æÀ» ±¸Ãà ÇϽʽÿÀ.

Á¤È®ÇÑ »ç¿ëÀÚ ÀÎÁõ ¹× ¾ÈÀüÇÑ Á¤º¸±³È¯
 
'¡®KSignCASE¡¯´Â PKI ÀÎÁõ¼­ ±â¹ÝÀÇ »ç¿ëÀÚ ¹× ¼­¹ö ÀÎÁõÀ» Á¦°øÇϹǷΠÀÎÇØ¼­ »ó´ë¹æÀ» Á¤È®È÷ ½Å·ÚÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â ±â´ÉÀ» API·Î Á¦°øÇϸç, ¶Ç À̸¦ ±â¹ÝÀ¸·Î º¸¾Èä³ÎÀ» Çü¼º, Á¦3ÀÚ¿¡°Ô Á¤º¸¸¦ ³ëÃâ½ÃŰÁö ¾Ê°í ¾ÈÀüÇÏ°Ô Á¤º¸±³È¯ÀÌ °¡´ÉÇϵµ·Ï API¸¦ Á¦°øÇÕ´Ï´Ù.
´Ù¾çÇÑ ÀÀ¿ë¿¡ Àû¿ë °¡´É
  ¡®KSignCASE¡¯´Â ´Ù¾çÇÑ Ç÷§Æû°ú ´Ù¾çÇÑ °³¹ß ¾ð¾î¸¦ Áö¿øÇÔÀ¸·Î¼­ ¾î¶°ÇÑ ÀÀ¿ë Á¦Ç°¿¡µµ ¹®Á¦¾øÀÌ Àû¿ëÀÌ °¡´ÉÇÕ´Ï´Ù.
À¯/¹«¼±È¯°æ Àû¿ë °¡´É
  ¶ÇÇÑ ¡®KSignCASE¡¯´Â À¯¼± »Ó¸¸ ¾Æ´Ï¶ó ¹«¼± ȯ°æÀ» À§ÇÑ °í¼ÓÀÇ ¾ÈÁ¤µÈ ECC ¾Ë°í¸®Áò µîÀ» Áö¿øÇÔÀ¸·Î¼­ º¸´Ù ´Ù¾çÇÑ È¯°æ¿¡ Àû¿ëÀÌ °¡´ÉÇÕ´Ï´Ù.

 




°ø°³Å° ±â¹Ý ÀÀ¿ëÇÁ·Î±×·¥¿¡¼­ »ç¿ëÇÏ´Â ÀÎÁõ¼­ ±â¹Ý ±â´ÉµéÀº KCASE 2002¸¦ ÅëÇØ ±¸ÇöµÉ ¼ö ÀÖ´Ù. °¢ ÀÀ¿ëÇÁ·Î±×·¥µéÀº ÀÎÁõ±â°ü ¹× Ÿ ÀÀ¿ëÇÁ·Î±×·¥°ú ¿¬°èµÇ¾î ´ÙÀ½°ú °°Àº PKI ±â¹Ý APIµéÀ» Á¦°ø ¹ÞÀ» ¼ö ÀÖ´Ù.

Certificate management API (KCASECM)
Certificate issuance and revocation API (KCASECMP)
PKCS(Public Key Cryptography Standard) API (KCASEPKCS)
Certificate verification API (KCASECV)
PEM encoding and memory management API (KCASECOMMON)
Storage method management API (KCASESTORAGE)
Encryption and decryption API (KCASECRYPTO)
ASN.1 API (KCASEASN1)




(1) ¾ÈÁ¤µÈ APIÁ¦°ø
°ø°³Å° ±â¹Ý±¸Á¶¿¡¼­ ÀÎÁõ¼­¸¦ ÀÌ¿ëÇÏ´Â ÀÀ¿ëÇÁ·Î±×·¥ °³¹ßÀ» À§ÇÑ ÃÖÀûÀÇ API Á¦°ø

(2) ´Ù¾çÇÑ ÀÀ¿ëÇÁ·Î±×·¥ »ç¿ë ±â´É
Ç÷§Æû°ú µ¶¸³ÀûÀ¸·Î ÀÎÁõ¼­¸¦ ÀÌ¿ëÇÏ·Á´Â ÀÀ¿ëÇÁ·Î±×·¥¿¡¼­ »ç¿ë°¡´É
SUN, HP, IBM, COMPAQ, Linux, MS Windows µî ´Ù¾çÇÑ Ç÷§Æû Áö¿ø

(3) ¾ÈÀüÇÑ Åë½Å¸ðµâÁö¿ø
ÀÎÁõ¼­°ü¸®ÇÁ·ÎÅäÄÝ(CMP: Certificate Management Protocol)À» ÅëÇØ ÀÎÁõ¼­¹ö¿Í µð·ºÅ͸®¼­¹ö(LDAP) »çÀÌ Åë½Å ¸ðµâ Áö¿ø

(4) ´Ù¾çÇÑ ÀúÀå¸ÅüÁö¿ø
½º¸¶Æ® Ä«µå, USB Key µîÀÇ ÀÎÁõ¼­ ÀúÀå Çϵå¿þ¾î ¹× »ýüÀÎ½Ä ÀåÄ¡¸¦ Áö¿ø

(5) ±¹Á¦ Ç¥ÁØ(RFC ¹× PKCS Ç¥ÁØ ÁØ¿ë)À» ÁØ¿ëÇÑ °³¹ßÁö¿ø

ÀÎÁõ¼­ °æ·Î ¹× ÀÎÁõ¼­ ÆóÁö¸ñ·Ï °ËÁõ ±â´É
(RFC2459-Internet X.509 Public Key Infrastructure Certificate, and CRL Profile)

ÀÎÁõ¼­ ¹ß±Þ, ÆóÁö, Àç¹ß±Þ, °»½Å µîÀÇ ±â´É
(RFC2510-Internet X.509 PKI Certificate Management Protocols)
Ű½Ö»ý¼º, ÀüÀÚ¼­¸í/°ËÁõ, ¾Ï/º¹È£È­
°³ÀÎŰ ¾Ïȣȭ (PKCS #5 Password-Based Encryption Standard)
Ç¥ÁØÈ­µÈ ÀüÀÚ¼­¸í (Signed-data), ¾Ïȣȭ (Enveloped-data), ÀüÀÚ¼­¸í ¹× ¾Ïȣȭ
(Signed-and-enveloped-data) ¸Þ½ÃÁöÇü½ÄÁö¿ø(PKCS-#7 Cryptographic Message Syntax Standard)

(6) ±¹³»¿Ü Ç¥ÁØÀÇ PKI Àû¿ë ¾Ë°í¸®Áò Áö¿ø
ÀüÀÚ¼­¸í ¾Ë°í¸®Áò : RSA, KCDSA, DSA, ECC
µ¥ÀÌÅÍ ¾Ïȣȭ ¾Ë°í¸®Áò : DES, SEED, AES, RC2/4/5, IDEA, CAST
ÇØ½¬ ¾Ë°í¸®Áò : SHA-1, SHA, MD2/4/5, HAS160

Àû¿ëºÐ¾ß

ÄÉÀÌ»çÀÎÀº ÀçÁ¤°æÁ¦ºÎ ¡®ÀçÁ¤Á¤º¸½Ã½ºÅÛ ±¸Ã࡯°ú ÇàÁ¤ÀÚÄ¡ºÎ ¡®ÀÎÁõ½Ã½ºÅÛ È®Ãæ »ç¾÷¡¯À» ÅëÇØ ¡®KSignCASE¡¯¸¦ Àû¿ë ±¸ÃàÇÏ¿´À¸¸ç, ÃÖ±Ù¿¡ ÀüÀڹοø¼­ºñ½º¸¦ À§Çؼ­ ½ÄǰÀǾàǰ¾ÈÀüû¿¡ ¡®KSignCASE¡¯¸¦ ±¸ÃàÇß½À´Ï´Ù. ¶ÇÇÑ Çѱ¹ÀüÀÚÁõ¸í¿ø, ÇÏ·º½ºÀÎÆ÷ÅØ, LGÄ«µå¿¡ º¸¾ÈŸŶÀ» °ø±ÞÇß½À´Ï´Ù.
¡®KSignCASE¡¯´Â PKIÀÎÁõ¼­±â¹ÝÀÇ API(Application Program Interface)Á¦°øÀ¸·Î Á¤È®ÇÑ »ç¿ëÀÚ ÀÎÁõÀ» µ½°í ÀÖ½À´Ï´Ù.
»ç¿ëÀÚ¿Í ¼­¹ö°£¿¡ ÁÖ°í¹Þ´Â µ¥ÀÌÅ͸¦ º¸´Ù ¾ÈÀüÇÏ°Ô º¸È£ÇÒ ¼ö ÀÖ´Â ÀÎÅͳݼ­ºñ½º ȯ°æÀÌ ÇÊ¿äÇÑ °÷ÀÌ¸é ¾îµðµçÁö ¡®KSignCASE¡¯µµÀÔÀÌ ¿ä±¸µË´Ï´Ù.

¡®KSignCASE¡¯´Â »ç¿ëÀÚÀÎÁõ½Ã½ºÅÛ(PKI), ³»¿ëÁõ¸í¼­ºñ½º(DVCS), ۰ü¸®±â¹Ý±¸Á¶(KMI), ÅëÇÕÀÎÁõ±ÇÇѰü¸®(EAM), PKI±â¹ÝÀÇ ¼ö½ÅÁ¦ÇѽýºÅÛ(CAS), µ¥ÀÌÅ;Ïȣȭ¼Ö·ç¼Ç(SWAT) µî ´Ù¾çÇÑ PKI Á¦Ç°±º°ú ¿¬µ¿ÀÌ °¡´ÉÇÕ´Ï´Ù.



KSignCASE(C¾ð¾î)
  - SUN: Solaris2.7/ IBM : AIX 4.3 / HP : HPUX 10.20 / COMPAQ : DEC UNIX 4.0 Alpha-tru64 / X86 : Red Hat LINUX 5.2 / X86 : MS Windows 98, NT, 2000
KSignCASE(JAVA)
  - JAVA : JDK1.3.1 ÀÌ»ó
KSignCASE UI for ATL/COM
  - MS Windows 98/ NT/ 2000




Untitled Document