SóProvas


ID
753136
Banca
FCC
Órgão
MPE-AP
Ano
2012
Provas
Disciplina
Segurança da Informação
Assuntos

São elementos da Public Key Infrastructure: End-Entities, Certification Authority, Certificate Repository e

Alternativas
Comentários
  • Gabarito "B"

    Conforme wikipedia:

    public-key infrastructure (PKI) is a set of hardware, software, people, policies, and procedures needed to create, manage, distribute, use, store, and revoke digital certificates.[1]

    In cryptography, a PKI is an arrangement that binds public keys with respective user identities by means of a certificate authority (CA). The user identity must be unique within each CA domain. The third-party Validation Authority (VA) can provide this information on behalf of CA. The binding is established through the registration and issuance process, which, depending on the level of assurance the binding has, may be carried out by software at a CA, or under human supervision. The PKI role that assures this binding is called the Registration Authority (RA). The RA ensures that the public key is bound to the individual to which it is assigned in a way that ensures non-repudiation.[citation needed]

  • Prezados , segundo a RFC 2459 que especifica infraestrutura de chaves públicas X.509 ( utilizada pela ICP-Brasil ) , vemos que os componentes do modelo são :

    end entity:  user of PKI certificates and/or end user system that is the subject of a certificate;

    CA:certification authority;

    RA: registration authority, i.e., an optional system to which a CA delegates certain management functions;

    repository: a system or collection of distributed systems that store certificates and CRLs and serves as a means of distributing these certificates and CRLs to end entities.

    Portanto , vemos que a alternativa correta é a letra B , registration authority ( RA ) , que no Brasil chamamos de autoridade de registro ( AR )

    Fonte : https://www.ietf.org/rfc/rfc2459


    A alternativa correta é : B.


  • Componentes de uma ICP: 

    Autoridade Certificadora (AC ou CA); 

    Autoridade Registradora (AR ou RA);

    Repositório de Certificado;

    Lista de Certificados Revogados (LCR).