透過您的圖書館登入
IP:3.147.67.245
  • 學位論文

以全球資訊網實現 LDAP 目錄異動安全機制

The Implementation of LDAP Directory Securely Update Mechanism Base on World Wide Web.

指導教授 : 鄭鳳生
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


在1997年12月通過的Internet RFC-2251 Lightweight Directory Access Protocol (v3) 中,定義了最新的LDAP標準,但由於安全認證機制 的缺乏,RFC-2251不建議以LDAP實作對LDAP目錄伺服器的資料 異動,直到有完整的標準… 而在建立Internet 上的LDAP目錄服務 時,不可避免的會有透過Internet進行資料異動的需求,本論文提 出利用在LDAP目錄伺服器旁建置全球資訊網伺服器 (World Wide Web Server,簡稱Web Server),並提供查詢�更新目錄伺服器內容 的LDAP 閘通道 (LDAP Gateway) ,以網頁的表單內容進行電子簽 章 (Electric Signature) 的型式回傳更改過的資料,經由Web Server端 的Script程式驗證後,再經由LDAP 閘通道完成LDAP目錄資料的 異動的架構。

並列摘要


The latest standard about LDAP is Internet RFC-2251 Lightweight Directory Access Protocol (v3) released in December 1997. Because RFC-2251 does dot provide a standard procedure for the secure authentication, it recommends that "Implementors are hereby discouraged from deploying LDAPv3 clients or servers which implement the update functionality, until a Proposed Standard for mandatory authentication in LDAPv3 has been approved and published as an RFC." In real world, we need to update directory through Internet. This thesis provides architecture to build a web based secure update system for directory server. We use electric signature combined with web transaction data, through the LDAP gateway, to complete the secure directory update process.

參考文獻


Attribute Syntax Definitions, The Internet Society, December 1997
The Internet Society, December 1997
[05] T. Howes, M. Smith, RFC 2255:The LDAP URL Format, The Internet Society,
December 1997
LDAPv3, The Internet Society, December 1997

延伸閱讀