How certificate chains work. Symantec(英语). A certificate chain is an ordered list of certificates, containing an SSL Certificate and Certificate Authority (CA) Certificates, that enable the receiver to verify that the sender and all CA's are trustworthy. The chain or path begins with the SSL certificate, and each certificate in the chain is signed by the entity identified by the next certificate in the chain.[永久失效連結]
RFC5280. IETF (英语). In general, a chain of multiple certificates may be needed, comprising a certificate of the public key owner (the end entity) signed by one CA, and zero or more additional certificates of CAs signed by other CAs. Such chains, called certification paths, are required because a public key user is only initialized with a limited number of assured CA public keys.缺少或|url=为空 (帮助)
Secure Website Certificate. Mozilla. [2017-07-17]. (原始内容存档于2019-05-11). An https web site is only secure to the extent that the web site is operated by someone in contact with the person who registered the domain name, and the communication between you and the website is encrypted to prevent eavesdropping. No other surety is implied. When you visit a secure website, Firefox will validate the website’s certificate by checking that the certificate that signed it is valid, and checking that the certificate that signed the parent certificate is valid and so forth up to a root certificate that is known to be valid. This chain of certificates is called the Certificate Hierarchy.
鏈結信任與憑證授權單位. 微软开发者网络. 憑證是在階層中建立的,其中每個個別憑證都會連結到核發憑證的 CA。此連結連至 CA 的憑證。接著,CA 的憑證會連結至核發 CA 原始憑證的 CA。在找到根 CA 的憑證之前,會一直重複這個程序。根 CA 的憑證在本質上會受到信任。數位簽章會藉由信任此階層 (也稱為「信任鏈結」(Chain of Trust)) 來驗證實體。您可以使用 MMC 嵌入式管理單元來檢視任何憑證的鏈結,只要按兩下任何憑證,然後按一下 [憑證路徑] 索引標籤即可。
Wikiwand in your browser!
Seamless Wikipedia browsing. On steroids.
Every time you click a link to Wikipedia, Wiktionary or Wikiquote in your browser's search results, it will show the modern Wikiwand interface.
Wikiwand extension is a five stars, simple, with minimum permission required to keep your browsing private, safe and transparent.