52. , CCITT (International Telegraph and Telephone Consultative Committee). Recommendation X.208: Specification of Abstract Syntax Notation One (ASN.1), Geneva, 1988
53. , CCITT. Recommendation X.209: Specification of Basic Encoding Rules for Abstract Syntax Notation One (ASN.1), Geneva, 1988
54. , CCITT Recommendation X.500: The Directory, Geneva, 1993
55. , CCITT. Recommendation X.501: The Directory - Models, Geneva, 1988
56. , CCITT. Recommendation X.800: Security Architecture for Open Systems Interconnection for CCITT Applications, Geneva, 1991
57. Chadwick D.W., Otenko A., Ball E, Implementing Role Based Access Controls Using X.509 Attribute Certificates,
58. Chadwick D.W., Otenko A., Hunter D., Leoni C, Privilege Management for E-construction,
59. , Common Criteria for Information Technology. Security Evaluation, Part 3: Security Assurance Requirements. January 2004. Version 2.2
60. Cooper D.A., Polk W.T, NIST Recommendation for X.509 Path Validation Version 0.5, 2004
61. , Current Methods of Authentication,
62. , Delta CRLs,
63. Diffie W., Hellman M.E, New Directions In Cryptography,
64. Dittrich D, Network "sniffers" and You,
65. Ellison C., Schneier B, Ten Risks of PKI: What You're not Being Told about Public Key Infrastructure, Computer Security Journal, vol. XVI, number 1, 2000
66. , Extensible Markup Language (XML) 1.0 (Third Edition),
67. Hallam-Baker P., Ford W, Internet X.509 Public Key Infrastructure. Enhanced CRL distribution options, Internet Draft, PKIX Working Group, August 1998
68. Hellberg S, SWEDAC-EID-SAT: Test specification of EID Cards and certificates,
69. Hesse P.M., Lemire D.P, Managing Interoperability in Non-Hierarchical Public Key In-frastructures,
70. Housley R., Polk W. T, Planning for PKI: Best practices for PKI Deployment, Wiley &Sons, 2001
71. , Integration of DCE with a Public Key Infrastructure,
72. , Introduction to Security Overview. Authentication and Identification Methods,
73. , Introduction to Single Sign-On, The Open Group,
74. , ISO/IEC 8824 Object Identifiers (OIDs),
75. , ISO/IEC JT1/SC27 WD 14516-1, Guidelines for the use and management of Trusted Third Party services - Part 1:General Overview, 1995.11
76. , ISO/IEC JT1/SC27 WD 14516-2, Guidelines for the use and management of Trusted Third Party services - Part 2: Technical aspects, 21.06.1996
77. , ITU-T (International Telecommunications Union) Recommendation X.509: Information Technology - Open Systems Interconnection -The Directory: Authentication Framework, 1997
78. , ITU-T Recommendation X.509, "Information Technology - Open Systems Interconnection - The Directory: Public Key and Attribute Certificate Frameworks", June 2000
79. Jarupunphol P., Mitchell C, PKI implementation issues in B2B e-commerce EICAR Conference Best Paper Proceedings, 2003
80. Johner H., Fujiwara S., Sm Yeung A., Stephanou A. W, Deploying a Public Key Infrastructure I, nternational Technical Support Organization, SG24-5512-00, February 2000
81. , Kerberos: The Network Authentication Protocol,
82. Kiran S., Lareau P., Lloyd S, PKI Basics - A Technical Introduction, A PKI Forum Note, November 2002
83. Kocher P.A, Quick Introduction to Certificate Revocation Trees (CRTs),
84. Kuhn D.R., Hu Vincent C., Polk W.T, Chang Shu-Jen, Introduction to Public Key Technology and the Federal PKI Infrastructure, National Institute of Standards and Technology, February, 2001
85. Lamport L, Password Authentication with Insecure Communication, Coomunications of the ACM, vol. 24, no. 11, 1981, p. 770-772
86. Lareau P, PKI Basics - A Business Perspective, A PKI Forum Note, April 2002, www.pkiforum.org/resourcees.html
87. , LDAP Duplication/Replication/Update Protocols (ldup),
88. Linn J., Branchaud M, An Examination of Asserted PKI Issues and Proposed Alternatives,
89. Lloyd S, Understanding Certification Path Construction, A PKI Forum White Paper, September 2002
90. Lloyd S, Paving the Road to PKI Interoperability,
91. Malpani A., Hoffman P., Housley R, Simple Certificate Validation Protocol (SCVP) Internet Draft November 2000,
92. , Minimum Interoperability Specification for PKI. Components, Version 2 - Second DRAFT, 2000. NIST PKI Project Team
93. Needham R. Schroeder M, Using Encryption for Authenticating in Large Networks of Computers, Coomunications of the ACM, vol. 21, no. 12, 1978, p. 995-999
94. , OASIS PKI Resources,
95. , OASIS Security Services (Security Assertion Markup Language - SAML) TC,
96. Olnes J., Verdier M., Ganivet N., Maillot D., Skretting J, Public Key Infrastructure and Certification Policy for Interdomain Management,
97. Perlman Radia, An Overview of PKI Trust Models,
98. , PGP User's Guide, Volume I: Essential Topics,
99. , PKI Interoperability Framework. PKI Forum White Paper,
100. Polk W.T., Hastings N.E., Malpani A, Public Key Infrastructures that Satisfy Security Goals,
101. Polk W.T., Hastings N.E, Bridge Certification Authorities: Connecting B2B Public Key Infrastructures, NIST,
102. , Public-Key Cryptography Standards, RSA Laboratories,
103. , Public Key Infrastructure. Request For Proposal. Object Management Group Document: ec/99-01-15,
104. , Public Key Infrastructure Standards,
105. Raina K, PKI Security Solutions for Enterprise: Solving HIPAA, E-Paper Act, and Other Compliance Issues, Wiley Publishing, Inc., 2003
106. Reese A, The Architecture of Privacy, 2004
107. , Request for Proposals for Certification Authority and Public Key Infrastructure Services, Office of the Secretary of Kansas State. Draft copy, 2001
108. , Secure Network Time Protocol (stime),
109. , Secure Socket Layer (SSL) 3.0 Specification,
110. , Securities Industry Root. Certificate Authority (SIRCA),
111. , Security Assertion Markup Language (SAML),
112. , Security Service API: Cryptographic API Recommendation Second Edition, NSA Cross Organization CAPI Team July 1, 1996
113. , SET Secure Electronic Transaction Specification. Book 1: Business Description, May 31, 1997
114. , SET Secure Electronic Transaction Specification. Book 2: Programmer's Guide,
115. , SET Secure Electronic Transaction. Specification. Book 3: Formal Protocol Definition, May 31, 1997
116. Slagell A.J, Bonilla R, PKI Scalability Issues,
117. , Standard for Entity Authentication Using Public Key Cryptography, FIPS 196 - Federal Information Processing Standard Publication 196, 1997
118. Stapleton J, CA Trust, A PKI Forum Note, July 2001
119. , Synopsis of PKI and Related Standards, The Center For Information Technology Stan-dards, 2000
120. , Time Signing, Symmetricom Trusted Time,
121. Turnbull J, Cross-Certification and PKI Policy Networking August 2000 Version: 1.0,
122. , Understanding Public Key Infrastructure (PKI), Technology White Paper, PKI WP 0999, RSA Security Inc., 1999
123. , What Are CA Certificates?,
124. , What is meant by trust?,
125. , WHAT IS SESAME?,
126. , X.500: Directory Access Protocol (DAP),
127. , X.500 Directories Part 2-Core Directory Information Tree and Schema Guideline,
128. , X.509 Certificate Policy. for the. E-Governance Certification Authorities, Version 1.3 9 November 2005
129. , XML Key Management Specification (XKMS 2.0),
130. , RFC 822 Standard for the format of ARPA Internet text messages,
131. , RFC 959 File Transfer Protocol,
132. , RFC 1034 Domain names - concepts and facilities,
133. , RFC 1035 Domain names - implementation and specification,
134. , RFC 1305 Network Time Protocol (Version 3) Specification, Implementation and Analysis,
135. , RFC 1510 The Kerberos Network Authentication Service (V5),
Читать дальше