This shows you the differences between two versions of the page.
amres_cbp_wiki:interni_deo:sigurnost:cookbook_for_securing_services [2011/05/11 14:49] mara |
amres_cbp_wiki:interni_deo:sigurnost:cookbook_for_securing_services [2011/07/08 15:38] (current) mara |
||
---|---|---|---|
Line 12: | Line 12: | ||
^Title ^Cookbook for securing a service access with digital certificates | | ^Title ^Cookbook for securing a service access with digital certificates | | ||
^Version/date |Revision 1 (of the document dated September 2010)/ 21. April 2011 | | ^Version/date |Revision 1 (of the document dated September 2010)/ 21. April 2011 | | ||
- | ^English version | | | + | ^English version | {{:amres_cbp_wiki:javni_deo:gn3-na3-t4-abpd106.pdf|PDF}}| |
^ Dodaci/Appendices (Serbian only) ||^ | ^ Dodaci/Appendices (Serbian only) ||^ | ||
^Dodatak B |[[amres_cbp_wiki:BPD_106_dodatakB_SSL| SSL protokol ]] | | ^Dodatak B |[[amres_cbp_wiki:BPD_106_dodatakB_SSL| SSL protokol ]] | | ||
Line 18: | Line 18: | ||
^ ||^ | ^ ||^ | ||
- | ====== Rezime ====== | + | ===== Rezime ====== |
Dokument promoviše usvajanje digitalnih sertifikata u institucijama članicama Akademske mreže Srbije kao načina za uspostavljanje sigurnih kanala komunikacije. | Dokument promoviše usvajanje digitalnih sertifikata u institucijama članicama Akademske mreže Srbije kao načina za uspostavljanje sigurnih kanala komunikacije. | ||
Line 27: | Line 27: | ||
U dokumenta je objašnjen postupak pribavljanja serverskog sertifikata – generisanje ključa, formiranje sertifikata, priprema za/i podnošenje zahteva za potpisivanje serverskog sertifikata. U završnom delu dokumenta nalaze se uputstva za instalaciju digitalnih sertifikata na Linux serverima. | U dokumenta je objašnjen postupak pribavljanja serverskog sertifikata – generisanje ključa, formiranje sertifikata, priprema za/i podnošenje zahteva za potpisivanje serverskog sertifikata. U završnom delu dokumenta nalaze se uputstva za instalaciju digitalnih sertifikata na Linux serverima. | ||
+ | |||
+ | ===== Summary ====== | ||
+ | This document promotes the adoption of digital certificates in the member institutions of the Academic Network of Serbia (AMRES) as a means of establishing secure communication channels. | ||
+ | |||
+ | In order to establish secure communication when receiving or sending data from/to a server, users must be sure that they are indeed accessing the resources they intended to access and that no one can read and/or change the data that is sent or received. Such security is provided by the use of digital certificates in conjunction with Secure Sockets Layer (SSL) technology. | ||
+ | |||
+ | The document outlines the components of a Public Key Infrastructure (PKI), and also the implementation of PKI functions to include AMRES in the TERENA Certificate Service (TCS). The document specifies various needs for PKI in a National Research and Education Networking organisation (NREN), which require various types of digital certificates, while special attention has been given to the use of PKI and digital certificates in combination with SSL technology for the purpose of the mutual authentication of services and their users. | ||
+ | |||
+ | The document explains the procedure for obtaining a server certificate – key generation, the creation of certificates and the preparation and submission of the request for signing a server certificate. The final part of the document contains instructions for installing digital certificates on Linux servers. | ||
+ |