Chapter 6. Data Recovery Manager
144
• A transport key pair and corresponding certificate.
• A storage key pair.
Figure 6.1, “How the Key Archival Process Works”
illustrates how the key archival process occurs
when an end entity requests a certificate.
Figure 6.1. How the Key Archival Process Works
1. The client requests and generates a dual key pair.
a. The end entity, using a client which can generate dual key pairs, submits a request through
the Certificate Manager enrollment form.
b. The client detects the JavaScript in the enrollment form and exports only the private
encryption key, not the private signing key.
c. The Certificate Manager detects the key archival option in the request and asks the client for
the private encryption key.
d. The client encrypts the private encryption key with the public key from the DRM's transport
certificate embedded in the enrollment form.
2. After approving the certificate request and issuing the certificate, the Certificate Manager sends it
to the DRM for storage, along with the public key). The Certificate Manager waits for verification
from the DRM that the private key has been received and stored and that it corresponds to the
public encryption key.
3. The DRM decrypts it with the private key. After confirming that the private encryption key
corresponds to the public encryption key, the DRM encrypts it again with its public key pair of the
storage key before storing it in its internal database.
Содержание CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE
Страница 36: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 144: ...124 ...
Страница 160: ...140 ...
Страница 208: ...188 ...
Страница 210: ...190 ...
Страница 256: ...236 ...
Страница 282: ...Chapter 12 Certificate Profiles 262 Parameter IssuerName_n IssuerType_n ...
Страница 285: ...Freshest CRL Extension Default 265 Parameter PointName_n PointIssuerName_n ...
Страница 335: ...Configuring Mappers 315 Figure 14 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 362: ...342 ...
Страница 376: ...356 ...
Страница 436: ...416 ...
Страница 490: ...470 ...
Страница 504: ...484 ...