
|
 |
|
 |
¡®KSignCASE(KSign
Certificate API for Secuire Environment)¡¯´Â API(Application
Program Interface) °ø°³Å°±â¹Ý±¸Á¶(PKI)ÇÏ¿¡¼ ÀüÀÚ¼¸í ¹× º¸¾È Åë½ÅÀ» À§ÇÑ
¾ÏÈ£È ¶óÀ̺귯¸®ÀÔ´Ï´Ù.
¸ðµç APIµéÀÇ Ã³¸®°úÁ¤°ú ÇÁ·ÎÅäÄÝÀÌ RFC series, PKCS Series µî ±¹Á¦Ç¥ÁØÀ»
±â¹ÝÀ¸·Î °³¹ßµÇ¾ú±â ¶§¹®¿¡ ¾ÈÁ¤¼ºÀÌ ³ô°í ¿¬µ¿ÀÌ ½±½À´Ï´Ù. |
|
|
 |
°øÁ߸ÁÀ» ÀÌ¿ëÇÏ´Â ÀÎÅÍ³Ý È¯°æ¿¡¼
»ç¿ëÀÚ¿¡ ´ëÇÑ ÀÍ¸í¼º¿¡ µû¶ó¼ »ç¿ëÀÚÀÇ ½Å·Ú°¡ ºÒ°¡´ÉÇϱ⠶§¹®¿¡ ÀüÀÚ»ó°Å·¡³ª ÀÎÅÍ³Ý ¼ºñ½º¿¡¼ÀÇ
»ç¿ëÀÚ È®ÀÎ ¹× Æ®·£Àè¼Ç¿¡ ´ëÇÑ ½Å·Ú°¡ ¾î·Á¿ö ¹ýÀû ºÐÀï°ú °¢Á¾ ÇØÅ· ¹®Á¦·Î ÀÎÇÑ »ç°í°¡ ¸¹ÀÌ
¹ß»ýÇÏ¿© ÀÌ¿¡ ´ëÇÑ ´ëÃ¥ÀÌ °Á¶µÇ°í ÀÖ½À´Ï´Ù.
PKIÀÀ¿ëº¸¾ÈŸŶÀÎ ¡®KSignCASE(KSign Certificate API for Secure
Environment)¡¯´Â PKI(Public Key Infrastructure;°ø°³Å°±â¹Ý±¸Á¶)
±â¹ÝÀÇ ÀÎÅͳݹðÅ·, ¿Â¶óÀÎÁõ±Ç°Å·¡, ÇàÁ¤¹Î¿øÃ³¸®, Á¾ÇÕÁ¤º¸½Ã½ºÅÛ, ÀüÀÚ»ó°Å·¡ µî ´Ù¾çÇÑ À¯/¹«¼±
ÀÎÅÍ³Ý È¯°æ¿¡¼ Á¤º¸ º¸¾È ¼ºñ½º¸¦ Á¦°øÇϰí ÀÖ½À´Ï´Ù.
¡®KSignCASE¡¯´Â ÀÎÁõ¼ ¹ß±Þ ¹× °ü¸®, ÀÎÁõ¼ °ËÁõ, ÆÄÀÏ ¹× ¸Þ½ÃÁö µ¥ÀÌÅÍ ¾Ï/º¹È£È,
ºñ¹ÐŰ/°ø°³Å°ÀÇ Å°½Ö »ý¼º, ¸Þ½ÃÁö ÀüÀÚ¼¸í ¹× °ËÁõ µî¿¡ ÀÌ¿ëµÉ ¼ö ÀÖµµ·Ï API (Application
Program Interface;ÀÀ¿ëÇÁ·Î±×·¥ ÀÎÅÍÆäÀ̽º) ¶óÀ̺귯¸® Çü½ÄÀ¸·Î Á¦°øµË´Ï´Ù.
¶ÇÇÑ ´Ù¾çÇÑ ½Ã½ºÅÛ°ú ´Ù¾çÇÑ ¾ð¾î¿¡ ½±°Ô Àû¿ëÇÒ ¼ö ÀÖµµ·Ï ´Ù¾çÇÑ Ç÷§Æû ȯ°æ(HP, SUN,
IBM, Windows, Linux)À» Áö¿øÇϰí ÀÀ¿ëÇÏ±â Æí¸®ÇÏ¸ç °¡Àå ¸¹ÀÌ »ç¿ëµÇ´Â ¾ð¾î(C/C++,
Java)¸¦ Áö¿øÇϰí ÀÖ½À´Ï´Ù.
ƯÈ÷ ¸ðµç APIµéÀÇ Ã³¸®°úÁ¤°ú ÇÁ·ÎÅäÄÝÀº ±¹Á¦Ç¥ÁØ(RFC Series, PKCS Series
µî)À» ±â¹ÝÀ¸·Î °³¹ßµÇ¾ú±â ¶§¹®¿¡ ¾ÈÀü¼ºÀÌ ³ô°í ¿¬µ¿ÀÌ ½±½À´Ï´Ù. ¡®KSignCASE¡¯´Â PKIÀÀ¿ëÇÁ·Î±×·¥À»
°³¹ßÇÒ °æ¿ì ÃÖÀûÀÇ È¯°æÀ» Á¦°øÇϰí ÀÖ½À´Ï´Ù. ¡®KSignCASE¡¯¸¦ Àû¿ëÇÔÀ¸·Î¼ »ç¿ëÀÚ ¹×
¼¹ö¸¦ ½Å·ÚÇÒ ¼ö Àִ ȯ°æÀ» Á¦°øÇÏ¸ç »ç¿ëÀÚ¿Í ¼¹ö°£¿¡ ÁÖ°í¹Þ´Â µ¥ÀÌÅ͸¦ º¸´Ù ¾ÈÀüÇÏ°Ô º¸È£ÇÒ
¼ö ÀÖ´Â ÀÎÅÍ³Ý ¼ºñ½º ȯ°æÀ» ±¸Ãà ÇϽʽÿÀ.
|
|
|
| °ø°³Å° ±â¹Ý ÀÀ¿ëÇÁ·Î±×·¥¿¡¼ »ç¿ëÇÏ´Â ÀÎÁõ¼ ±â¹Ý ±â´ÉµéÀº
KCASE 2002¸¦ ÅëÇØ ±¸ÇöµÉ ¼ö ÀÖ´Ù. °¢ ÀÀ¿ëÇÁ·Î±×·¥µéÀº ÀÎÁõ±â°ü ¹× Ÿ ÀÀ¿ëÇÁ·Î±×·¥°ú ¿¬°èµÇ¾î
´ÙÀ½°ú °°Àº PKI ±â¹Ý APIµéÀ» Á¦°ø ¹ÞÀ» ¼ö ÀÖ´Ù. |
|
Certificate management API (KCASECM) |
 |
Certificate issuance and revocation API (KCASECMP) |
 |
PKCS(Public Key Cryptography Standard) API (KCASEPKCS)
|
 |
Certificate verification API (KCASECV) |
 |
PEM encoding and memory management API (KCASECOMMON) |
 |
Storage method management API (KCASESTORAGE) |
 |
Encryption and decryption API (KCASECRYPTO) |
 |
ASN.1 API (KCASEASN1) |
|
|
 |
(1) ¾ÈÁ¤µÈ
APIÁ¦°ø
|
°ø°³Å° ±â¹Ý±¸Á¶¿¡¼ ÀÎÁõ¼¸¦ ÀÌ¿ëÇÏ´Â ÀÀ¿ëÇÁ·Î±×·¥ °³¹ßÀ» À§ÇÑ
ÃÖÀûÀÇ API Á¦°ø |
(2) ´Ù¾çÇÑ ÀÀ¿ëÇÁ·Î±×·¥
»ç¿ë ±â´É
|
Ç÷§Æû°ú µ¶¸³ÀûÀ¸·Î ÀÎÁõ¼¸¦ ÀÌ¿ëÇÏ·Á´Â ÀÀ¿ëÇÁ·Î±×·¥¿¡¼ »ç¿ë°¡´É |
 |
SUN, HP, IBM, COMPAQ, Linux, MS Windows µî ´Ù¾çÇÑ
Ç÷§Æû Áö¿ø |
(3) ¾ÈÀüÇÑ
Åë½Å¸ðµâÁö¿ø
|
ÀÎÁõ¼°ü¸®ÇÁ·ÎÅäÄÝ(CMP: Certificate Management
Protocol)À» ÅëÇØ ÀÎÁõ¼¹ö¿Í µð·ºÅ͸®¼¹ö(LDAP) »çÀÌ Åë½Å ¸ðµâ Áö¿ø |
(4) ´Ù¾çÇÑ
ÀúÀå¸ÅüÁö¿ø
|
½º¸¶Æ® Ä«µå, USB Key µîÀÇ ÀÎÁõ¼ ÀúÀå Çϵå¿þ¾î ¹×
»ýüÀÎ½Ä ÀåÄ¡¸¦ Áö¿ø |
(5) ±¹Á¦ Ç¥ÁØ(RFC
¹× PKCS Ç¥ÁØ ÁØ¿ë)À» ÁØ¿ëÇÑ °³¹ßÁö¿ø
(6) ±¹³»¿Ü
Ç¥ÁØÀÇ PKI Àû¿ë ¾Ë°í¸®Áò Áö¿ø
|
ÀüÀÚ¼¸í ¾Ë°í¸®Áò : RSA, KCDSA, DSA, ECC |
 |
µ¥ÀÌÅÍ ¾ÏÈ£È ¾Ë°í¸®Áò : DES, SEED, AES, RC2/4/5, IDEA,
CAST |
 |
ÇØ½¬ ¾Ë°í¸®Áò : SHA-1, SHA, MD2/4/5, HAS160 |
Àû¿ëºÐ¾ß
ÄÉÀÌ»çÀÎÀº ÀçÁ¤°æÁ¦ºÎ ¡®ÀçÁ¤Á¤º¸½Ã½ºÅÛ ±¸Ã࡯°ú ÇàÁ¤ÀÚÄ¡ºÎ ¡®ÀÎÁõ½Ã½ºÅÛ È®Ãæ »ç¾÷¡¯À» ÅëÇØ
¡®KSignCASE¡¯¸¦ Àû¿ë ±¸ÃàÇÏ¿´À¸¸ç, ÃÖ±Ù¿¡ ÀüÀڹοø¼ºñ½º¸¦ À§Çؼ ½ÄǰÀǾàǰ¾ÈÀüû¿¡
¡®KSignCASE¡¯¸¦ ±¸ÃàÇß½À´Ï´Ù. ¶ÇÇÑ Çѱ¹ÀüÀÚÁõ¸í¿ø, ÇÏ·º½ºÀÎÆ÷ÅØ, LGÄ«µå¿¡ º¸¾ÈŸŶÀ»
°ø±ÞÇß½À´Ï´Ù.
¡®KSignCASE¡¯´Â PKIÀÎÁõ¼±â¹ÝÀÇ API(Application Program Interface)Á¦°øÀ¸·Î
Á¤È®ÇÑ »ç¿ëÀÚ ÀÎÁõÀ» µ½°í ÀÖ½À´Ï´Ù.
»ç¿ëÀÚ¿Í ¼¹ö°£¿¡ ÁÖ°í¹Þ´Â µ¥ÀÌÅ͸¦ º¸´Ù ¾ÈÀüÇÏ°Ô º¸È£ÇÒ ¼ö ÀÖ´Â ÀÎÅͳݼºñ½º ȯ°æÀÌ ÇÊ¿äÇÑ
°÷ÀÌ¸é ¾îµðµçÁö ¡®KSignCASE¡¯µµÀÔÀÌ ¿ä±¸µË´Ï´Ù.
¡®KSignCASE¡¯´Â »ç¿ëÀÚÀÎÁõ½Ã½ºÅÛ(PKI), ³»¿ëÁõ¸í¼ºñ½º(DVCS), ۰ü¸®±â¹Ý±¸Á¶(KMI),
ÅëÇÕÀÎÁõ±ÇÇѰü¸®(EAM), PKI±â¹ÝÀÇ ¼ö½ÅÁ¦ÇѽýºÅÛ(CAS), µ¥ÀÌÅ;Ïȣȼַç¼Ç(SWAT)
µî ´Ù¾çÇÑ PKI Á¦Ç°±º°ú ¿¬µ¿ÀÌ °¡´ÉÇÕ´Ï´Ù.
|
|
|
|
KSignCASE(C¾ð¾î) |
| |
- SUN: Solaris2.7/ IBM : AIX 4.3 / HP : HPUX 10.20
/ COMPAQ : DEC UNIX 4.0 Alpha-tru64 / X86 : Red Hat LINUX
5.2 / X86 : MS Windows 98, NT, 2000 |
 |
KSignCASE(JAVA) |
| |
- JAVA : JDK1.3.1 ÀÌ»ó |
 |
KSignCASE UI for
ATL/COM |
| |
- MS Windows 98/ NT/ 2000 |
|
|
|
|