A Framework for Issuing Server Certificate to Academic Organizations

Masaki SHIMAOKA  Takeshi NISHIMURA  Takaaki KOMURA  Motonori NAKAMURA  Hiroyuki SATO  Yasuo OKABE  Noboru SONEHARA 

Publication
B - Abstracts of IEICE TRANSACTIONS on Communications (Japanese Edition)  Vol.J95-B  No.7  pp.871-882
Publication Date: 2012/07/01
Online ISSN: 1881-0209
Print ISSN: 1344-4697
Type of Manuscript: Special Section PAPER (Special Section on Frontiers by Young Researchers)
Category: 
Keyword: 
academic federationauthentication platformuniversity PKIserver certificate

Full Text(in Japanese): PDF(2MB)


Summary: 
In order to perform properly server authentication which establishes secure communications, there is necessary of server certificate issued by public certification authority. However, in the past it has never been properly recognized the importance of the issuance from the public certification authority, as well as there is a issue that the vetting process of commercial server certificate is complicated and does not meet again with the realities of academic institutions, the deployment of the server certificate had been delayed in academic institutions. In this paper, authors therefore proposed a framework for issuing server certificate to academic organizations consisting of the issuing scheme of server certificates optimized for academic organizations and the server certificate issuance assistant system. Through field-test and continuous operation in National Institute of Informatics, we demonstrate that 1) achieving the optimization of vetting process for academic organizations by our scheme while ensuring the level of assurance as “Organization Validation”, 2) automation of registration process in registration authority by our system, and also 3) the laborsaving in academic organizations as local registration authority if the organization prepare the required systems.