云计算技术的迅速发展,使得基于云服务的数字签名模型走向实用,其可靠、便捷、按需地通过网络来访问密码运算基础设施的特性越来越受到企业的青睐。文章提出一种在云计算环境下用于生成数字签名的技术方案,该方案实现了对证书及其私钥的集中管理。此外,方案采用分布式处理与密钥分割相结合的方式确保证书与私钥的安全。方案对于云签名服务平台的密码运算提出了较低的要求,满足了大量用户并发处理的需求。
With the rapid development of cloud computing, models of cloud-based digital signature become practical. More enthusiastic responses from enterprises conifrm that cloud computing plays an important role in many ifelds of IT with its features of reliable, convenient, on-demand network access to security infrastructures that perform cryptographic operations. This paper proposes a scheme of generating digital signature in the cloud. The scheme achieves centralized management of certiifcates and their private keys, and ensures the security of certificates and their private keys by using the combination of distributed processing with key segmentation. Meanwhile, the scheme presents lower performance requirements of cryptographic operations for cloud signature service platform, which meet the need of simultaneous processing from a large number of users.