亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频

? 歡迎來到蟲蟲下載站! | ?? 資源下載 ?? 資源專輯 ?? 關于我們
? 蟲蟲下載站

?? rfc2559.txt

?? PKIX的RFC英文文檔
?? TXT
?? 第 1 頁 / 共 2 頁
字號:
Network Working Group                                      S. BoeyenRequest for Comments: 2559                                   EntrustUpdates: 1778                                               T. HowesCategory: Standards Track                                   Netscape                                                          P. Richard                                                               Xcert                                                          April 1999                Internet X.509 Public Key Infrastructure                     Operational Protocols - LDAPv2Status of this Memo   This document specifies an Internet standards track protocol for the   Internet community, and requests discussion and suggestions for   improvements.  Please refer to the current edition of the "Internet   Official Protocol Standards" (STD 1) for the standardization state   and status of this protocol.  Distribution of this memo is unlimited.Copyright Notice   Copyright (C) The Internet Society (1999).  All Rights Reserved.1.  Abstract   The protocol described in this document is designed to satisfy some   of the operational requirements within the Internet X.509 Public Key   Infrastructure (IPKI).  Specifically, this document addresses   requirements to provide access to Public Key Infrastructure (PKI)   repositories for the purposes of retrieving PKI information and   managing that same information.  The mechanism described in this   document is based on the Lightweight Directory Access Protocol (LDAP)   v2, defined in RFC 1777, defining a profile of that protocol for use   within the IPKI and updates encodings for certificates and revocation   lists from RFC 1778. Additional mechanisms addressing PKIX   operational requirements are specified in separate documents.   The key words 'MUST', 'REQUIRED', 'SHOULD', 'RECOMMENDED', and 'MAY'   in this document are to be interpreted as described in RFC 2119.2.  Introduction   This specification is part of a multi-part standard for development   of a Public Key Infrastructure (PKI) for the Internet. This   specification addresses requirements to provide retrieval of X.509   PKI information, including certificates and CRLs from a repository.   This specification also addresses requirements to add, delete andBoeyen, et al.              Standards Track                     [Page 1]RFC 2559          PKIX Operational Protocols - LDAPv2         April 1999   modify PKI information in a repository. A profile based on the LDAP   version 2 protocol is provided to satisfy these requirements.3.  Model   The PKI components, as defined in PKIX Part 1, which are involved in   PKIX operational protocol interactions include:      -  End Entities      -  Certification Authorities (CA)      -  Repository   End entities and CAs using LDAPv2, retrieve PKI information from the   repository using a subset of the LDAPv2 protocol.   CAs populate the repository with PKI information using a subset of   the LDAPv2 protocol.4.  Lightweight Directory Access Protocol (LDAP)   The following sections examine the retrieval of PKI information from   a repository and management of PKI information in a repository. A   profile of the LDAPv2 protocol is defined for providing these   services.   Section 5 satisfies the requirement to retrieve PKI information (a   certificate, CRL, or other information of interest) from an entry in   the repository, where the retrieving entity (either an end entity or   a CA) has knowledge of the name of the entry. This is termed   "repository read".   Section 6 satisfies the same requirement as 5 for the situation where   the name of the entry is not known, but some other related   information which may optionally be used as a filter against   candidate entries in the repository, is known.  This is termed   "repository search".   Section 7 satisfies the requirement of CAs to add, delete and modify   PKI information information (a certificate, CRL, or other information   of interest)in the repository. This is termed "repository modify".   The subset of LDAPv2 needed to support each of these functions is   described below.  Note that the repository search service is a   superset of the repository read service in terms of the LDAPv2   functionality needed.   Note that all tags are implicit by default in the ASN.1 definitions   that follow.Boeyen, et al.              Standards Track                     [Page 2]RFC 2559          PKIX Operational Protocols - LDAPv2         April 19995.  LDAP Repository Read   To retrieve information from an entry corresponding to the subject or   issuer name of a certificate, requires a subset of the following   three LDAP operations:     BindRequest (and BindResponse)     SearchRequest (and SearchResponse)     UnbindRequest   The subset of each REQUIRED operation is given below.5.1.  Bind5.1.1.  Bind Request   The full LDAP v2 Bind Request is defined in RFC 1777.   An application providing a LDAP repository read service MUST   implement the following subset of this operation:      BindRequest ::=        [APPLICATION 0] SEQUENCE {           version      INTEGER (2),           name         LDAPDN, -- MUST accept NULL LDAPDN           simpleauth [0] OCTET STRING  -- MUST accept NULL simple           }   An application providing a LDAP repository read service MAY implement   other aspects of the BindRequest as well.   Different services may have different security requirements.  Some   services may allow anonymous search, others may require   authentication. Those services allowing anonymous search may choose   only to allow search based on certain criteria and not others.   A LDAP repository read service SHOULD implement some level of   anonymous search access. A LDAP repository read service MAY implement   authenticated search access.5.1.2.  Bind Response   The full LDAPv2 BindResponse is described in RFC 1777.   An application providing a LDAP repository read service MUST   implement this entire protocol element, though only the following   error codes may be returned from a Bind operation:Boeyen, et al.              Standards Track                     [Page 3]RFC 2559          PKIX Operational Protocols - LDAPv2         April 1999       success                      (0),       operationsError              (1),       protocolError                (2),       authMethodNotSupported       (7),       noSuchObject                 (32),       invalidDNSyntax              (34),       inappropriateAuthentication  (48),       invalidCredentials           (49),       busy                         (51),       unavailable                  (52),       unwillingToPerform           (53),       other                        (80)5.2.  Search5.2.1.  Search Request   The full LDAPv2 SearchRequest is defined in RFC 1777.   An application providing a LDAP repository read service MUST   implement the following subset of the SearchRequest.      SearchRequest ::=        [APPLICATION 3] SEQUENCE {           baseObject     LDAPDN,           scope             ENUMERATED {                             baseObject   (0),                                        },           derefAliases   ENUMERATED {                             neverDerefAliases   (0),                                     },           sizeLimit      INTEGER (0),           timeLimit      INTEGER (0),           attrsOnly      BOOLEAN, -- FALSE only           filter         Filter,           attributes     SEQUENCE OF AttributeType                               }      Filter ::=        CHOICE {          present        [7] AttributeType, -- "objectclass" only                 }   This subset of the LDAPv2 SearchRequest allows the LDAPv2 "read"   operation: a base object search with a filter testing for the   existence of the objectClass attribute.Boeyen, et al.              Standards Track                     [Page 4]RFC 2559          PKIX Operational Protocols - LDAPv2         April 1999   An application providing a LDAP repository read service MAY implement   other aspects of the SearchRequest as well.5.2.2.   The full LDAPv2 SearchResponse is defined in RFC 1777.   An application providing a LDAP repository read service over LDAPv2   MUST implement the full SearchResponse.   Note that in the case of multivalued attributes such as   userCertificate a SearchResponse containing this attribute will   include all values, assuming the requester has sufficient access   permissions.  The application/relying party may need to select an   appropriate value to be used. Also note that retrieval of a   certificate from a named entry does not guarantee that the   certificate will include that same Distinguished Name (DN) and in   some cases the subject DN in the certificate may be NULL.5.3.  Unbind   The full LDAPv2 UnbindRequest is defined in RFC 1777.   An application providing a LDAP repository read service MUST   implement the full UnbindRequest.6.  LDAP Repository Search   To search, using arbitrary criteria, for an entry in a repository   containing a certificate, CRL, or other information of interest,   requires a subset of the following three LDAP operations:     BindRequest (and BindResponse)     SearchRequest (and SearchResponse)     UnbindRequest   The subset of each operation REQUIRED is given below.6.1.  Bind   The BindRequest and BindResponse subsets needed are the same as those   described in Section 5.1.   The full LDAP v2 Bind Request is defined in RFC 1777.Boeyen, et al.              Standards Track                     [Page 5]RFC 2559          PKIX Operational Protocols - LDAPv2         April 19996.2.  Search6.2.1.  Search Request   The full LDAPv2 SearchRequest is defined in RFC 1777.   An application providing a LDAP repository search service MUST   implement the following subset of the SearchRequest protocol unit.      SearchRequest ::=        [APPLICATION 3] SEQUENCE {           baseObject     LDAPDN,           scope          ENUMERATED {                               baseObject     (0),                               singleLevel    (1),                               wholeSubtree   (2)                                     },           derefAliases   ENUMERATED {                               neverDerefAliases     (0),                                     },           sizeLimit      INTEGER (0 .. maxInt),           timeLimit      INTEGER (0 .. maxInt),           attrsOnly      BOOLEAN,  -- FALSE only           filter         Filter,           attributes     SEQUENCE OF AttributeType                                }   All aspects of the SearchRequest MUST be supported, except for the   following:   - Only the neverDerefAliases value of derefAliases needs to be     supported   - Only the FALSE value for attrsOnly needs to be supported   This subset provides a more general search capability.  It is a   superset of the SearchRequest subset defined in Section 5.2.1. The   elements added to this service are:   - singleLevel and wholeSubtree scope needs to be supported   - sizeLimit is included   - timeLimit is included   - Enhanced filter capabilityBoeyen, et al.              Standards Track                     [Page 6]RFC 2559          PKIX Operational Protocols - LDAPv2         April 1999   An application providing a LDAP repository search service MAY   implement other aspects of the SearchRequest as well.6.2.2.  Search Response   The full LDAPv2 SearchResponse is defined in RFC 1777.   An application providing a LDAP repository search service over LDAPv2   MUST implement the full SearchResponse.6.3.  Unbind   An application providing a LDAP repository search service MUST   implement the full UnbindRequest.7.  LDAP Repository Modify   To add, delete and modify PKI information in a repository  requires a   subset of the following LDAP operations:     BindRequest (and BindResponse)     ModifyRequest (and ModifyResponse)     AddRequest (and AddResponse)     DelRequest (and DelResponse

?? 快捷鍵說明

復制代碼 Ctrl + C
搜索代碼 Ctrl + F
全屏模式 F11
切換主題 Ctrl + Shift + D
顯示快捷鍵 ?
增大字號 Ctrl + =
減小字號 Ctrl + -
亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频
国产91精品一区二区麻豆亚洲| 欧美亚洲自拍偷拍| 久久国产福利国产秒拍| 午夜视频在线观看一区二区三区| 亚洲一区影音先锋| 亚洲午夜日本在线观看| 亚洲成人av福利| 一区二区三区91| 亚洲一区在线看| 日韩av中文在线观看| 美女mm1313爽爽久久久蜜臀| 精品亚洲国内自在自线福利| 狠狠色狠狠色综合| 懂色中文一区二区在线播放| 色综合天天狠狠| 欧美日韩黄色影视| 精品日产卡一卡二卡麻豆| 欧美不卡激情三级在线观看| 久久网这里都是精品| 国产精品久久久久久户外露出 | 从欧美一区二区三区| 成人一区在线观看| 国产欧美视频一区二区三区| 欧美国产激情二区三区| 亚洲精品国产高清久久伦理二区| 亚洲国产精品自拍| 免费观看一级特黄欧美大片| 国产成人在线视频网站| 97成人超碰视| 3atv在线一区二区三区| 久久久精品日韩欧美| 亚洲乱码日产精品bd| 日韩二区三区四区| 成人一区在线观看| 欧美欧美欧美欧美首页| 2023国产一二三区日本精品2022| 国产精品久久777777| 偷拍日韩校园综合在线| 国产精品18久久久| 欧美日韩精品一区视频| 久久午夜老司机| 一卡二卡三卡日韩欧美| 激情综合色丁香一区二区| 9色porny自拍视频一区二区| 7777精品久久久大香线蕉| 国产视频视频一区| 五月婷婷激情综合| 国产成人免费高清| 欧美日韩一区视频| 日本一区二区三区在线观看| 午夜日韩在线电影| 成人av在线资源网| 日韩欧美第一区| 亚洲女爱视频在线| 国产精品69久久久久水密桃| 欧美视频在线一区| 国产精品免费网站在线观看| 青青草成人在线观看| 一本色道久久综合亚洲91| 精品成人一区二区| 亚洲电影在线播放| 波多野结衣中文字幕一区| 欧美一区二区三区影视| 亚洲精品成人精品456| 国产酒店精品激情| 在线不卡中文字幕| 亚洲欧美日韩国产一区二区三区| 国产乱码一区二区三区| 欧美午夜影院一区| 亚洲色图欧洲色图| 成人丝袜18视频在线观看| 欧美一级国产精品| 亚洲国产成人精品视频| 91在线播放网址| 国产日产欧美一区| 国内一区二区在线| 日韩一区二区电影| 午夜精品在线视频一区| 欧美最猛性xxxxx直播| 国产精品卡一卡二卡三| 国产成人精品免费网站| 欧美电影精品一区二区| 人禽交欧美网站| 正在播放亚洲一区| 日韩精品亚洲一区| 欧美巨大另类极品videosbest| 亚洲自拍另类综合| 91小视频免费观看| 亚洲视频一二区| 久久久精品欧美丰满| 极品少妇xxxx偷拍精品少妇| 91精品国模一区二区三区| 亚洲成在人线在线播放| 在线一区二区观看| 亚洲自拍另类综合| 在线观看亚洲专区| 一区二区三区四区蜜桃| 91久久精品一区二区二区| 亚洲欧美电影一区二区| 99re成人精品视频| 亚洲黄色片在线观看| 色播五月激情综合网| 亚洲卡通欧美制服中文| 91一区二区在线观看| ㊣最新国产の精品bt伙计久久| 成人综合激情网| 国产精品不卡一区二区三区| 一本色道久久综合亚洲精品按摩| 亚洲精品视频在线| 欧美自拍丝袜亚洲| 视频一区在线播放| 精品国产自在久精品国产| 国产综合久久久久久鬼色| 久久久www免费人成精品| 成人在线视频一区| 亚洲免费视频成人| 欧美精品第1页| 精品亚洲成av人在线观看| 久久免费视频一区| 波多野结衣在线aⅴ中文字幕不卡| 亚洲欧美一区二区视频| 色88888久久久久久影院野外| 亚洲高清免费视频| 日韩免费观看高清完整版| 国产99久久久精品| 亚洲精品v日韩精品| 8v天堂国产在线一区二区| 久久99国产精品久久99果冻传媒| 久久久一区二区三区捆绑**| av福利精品导航| 日韩精品久久理论片| 国产日韩欧美精品综合| 在线欧美一区二区| 久久精品免费观看| 综合在线观看色| 欧美乱熟臀69xxxxxx| 国产一区二区三区久久悠悠色av| 国产精品不卡在线| 欧美一级搡bbbb搡bbbb| 国产精品羞羞答答xxdd| 亚洲永久精品国产| 久久这里只有精品6| 91久久精品一区二区二区| 久色婷婷小香蕉久久| 亚洲日本欧美天堂| 精品少妇一区二区三区免费观看| 97精品视频在线观看自产线路二| 免费人成网站在线观看欧美高清| 国产精品视频免费看| 在线播放91灌醉迷j高跟美女 | 捆绑调教一区二区三区| 中文字幕在线不卡一区| 777久久久精品| 成人av在线电影| 免费一级欧美片在线观看| 亚洲欧美综合另类在线卡通| 日韩欧美国产一区二区三区| 国产欧美精品一区二区色综合朱莉| 精品视频一区二区不卡| 高清日韩电视剧大全免费| 五月婷婷综合在线| 自拍偷拍亚洲激情| 欧美sm美女调教| 欧美羞羞免费网站| 大陆成人av片| 国内精品写真在线观看| 亚洲国产成人av网| 国产精品久久免费看| 精品盗摄一区二区三区| 欧美日韩高清一区| 91丨九色porny丨蝌蚪| 国产中文字幕一区| 日本午夜一本久久久综合| 一区二区三区四区五区视频在线观看| 久久久久久久久久久久电影| 91精品国产综合久久香蕉的特点| av日韩在线网站| 国产99久久久国产精品免费看 | 欧美精品精品一区| 色噜噜偷拍精品综合在线| 国产成人在线视频免费播放| 欧美aa在线视频| 亚洲不卡在线观看| 玉米视频成人免费看| 国产精品乱人伦| 久久天天做天天爱综合色| 日韩一级成人av| 7777精品伊人久久久大香线蕉完整版| 欧洲精品中文字幕| 一道本成人在线| 色综合天天综合色综合av| 成人app网站| 成人丝袜18视频在线观看| 懂色中文一区二区在线播放| 国产乱人伦精品一区二区在线观看| 精品在线一区二区| 蜜桃久久精品一区二区| 免费成人在线观看| 日本va欧美va欧美va精品| 免费成人在线观看视频|