Glossary
841
Data Recovery Manager transport certificate
Certifies the public key used by an
end entity to encrypt the entity’s encryption key for transport to the Data Recovery
Manager. The Data Recovery Manager uses the private key corresponding to the
certified public key to decrypt the end entity’s key before encrypting it with the
Data Recovery Manager storage key. The Data Recovery Manager also uses the
same private key to sign the proof of archival token it sends to the Registration
Manager after storing an end entity’s encryption key.
decryption
The unscrambling of data that has been encrypted. See encryption.
Data Encryption Standard (DES)
A FIPS-approved cryptographic algorithm
required by FIPS 140-1 and specified by FIPS PUBS 46-2. DES, which uses 56-bit
keys, is a standard encryption and decryption algorithm that has been used
successfully throughout the world for more than 20 years. See also FIPS PUBS
140-1. For detailed information, see
http://www.itl.nist.gov/div897/pubs/fip46-2.htm
.
digital ID
See certificate.
digital signature
To create a digital signature, the signing software first creates a
one-way hash from the data to be signed (such as a newly issued certificate). The
one-way hash is then encrypted with the private key of the signer. The resulting
digital signature is unique for each piece of data signed. Even a single comma
added to a message changes the digital signature for that message. Successful
decryption of the digital signature with the signer’s public key and comparison
with another hash of the same data provides tamper detection. Verification of the
certificate chain for the certificate containing the public key provides
authentication of the signer. See also nonrepudiation, encryption.
Digital Signature Algorithm (DSA)
A FIPS-approved cryptographic algorithm
specified by the Digital Signature Standard (DSS), FIPS PUBS 186. DSA is a
standard algorithm used to create digital signatures. For detailed information, see
http://www.itl.nist.gov/div897/pubs/fip186.htm
.
distinguished name (DN)
A series of AVAs that identify the subject of a
certificate. See attribute value assertion (AVA).
DSA
See Digital Signature Algorithm (DSA).
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...