標(biāo)準(zhǔn)解讀

《GM/T 0020-2023 證書應(yīng)用綜合服務(wù)接口規(guī)范》與《GM/T 0020-2012 證書應(yīng)用綜合服務(wù)接口規(guī)范》相比,在內(nèi)容上進(jìn)行了多方面的更新和調(diào)整,主要體現(xiàn)在以下幾個(gè)方面:

首先,在技術(shù)要求層面,《GM/T 0020-2023》增加了對(duì)新型密碼算法的支持,包括但不限于SM9等國(guó)家密碼管理局批準(zhǔn)使用的密碼算法,這反映了隨著技術(shù)進(jìn)步,標(biāo)準(zhǔn)對(duì)于安全性和兼容性的更高追求。同時(shí),該版本還強(qiáng)化了數(shù)據(jù)傳輸過(guò)程中的安全性要求,比如采用更高級(jí)別的加密機(jī)制來(lái)保護(hù)敏感信息不被泄露。

其次,關(guān)于功能擴(kuò)展,《GM/T 0020-2023》新增了一些服務(wù)接口定義,如支持移動(dòng)互聯(lián)網(wǎng)環(huán)境下的證書管理操作,以及針對(duì)物聯(lián)網(wǎng)設(shè)備的特殊需求提供了專門的服務(wù)接口設(shè)計(jì)。這些變化旨在適應(yīng)當(dāng)前及未來(lái)一段時(shí)間內(nèi)信息技術(shù)領(lǐng)域的發(fā)展趨勢(shì),特別是對(duì)于快速增長(zhǎng)的移動(dòng)互聯(lián)與物聯(lián)網(wǎng)應(yīng)用場(chǎng)景的支持。

再次,在接口協(xié)議描述方面,《GM/T 0020-2023》細(xì)化和完善了原有文檔結(jié)構(gòu),使得開發(fā)者能夠更加清晰準(zhǔn)確地理解并實(shí)現(xiàn)相關(guān)功能。此外,新版本中也加入了更多樣化的示例代碼,幫助讀者更好地理解和實(shí)踐標(biāo)準(zhǔn)中提出的要求。


如需獲取更多詳盡信息,請(qǐng)直接參考下方經(jīng)官方授權(quán)發(fā)布的權(quán)威標(biāo)準(zhǔn)文檔。

....

查看全部

  • 現(xiàn)行
  • 正在執(zhí)行有效
  • 2023-12-04 頒布
  • 2024-06-01 實(shí)施
?正版授權(quán)
GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范_第1頁(yè)
GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范_第2頁(yè)
GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范_第3頁(yè)
GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范_第4頁(yè)
GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范_第5頁(yè)
免費(fèi)預(yù)覽已結(jié)束,剩余59頁(yè)可下載查看

下載本文檔

GM/T 0020-2023證書應(yīng)用綜合服務(wù)接口規(guī)范-免費(fèi)下載試讀頁(yè)

文檔簡(jiǎn)介

ICS35.030

CCSL80

中華人民共和國(guó)密碼行業(yè)標(biāo)準(zhǔn)

GM/T0020—2023

代替GM/T0020—2012

證書應(yīng)用綜合服務(wù)接口規(guī)范

Certificateapplicationintegratedserviceinterfacespecification

2023?12?04發(fā)布2024?06?01實(shí)施

國(guó)家密碼管理局發(fā)布

GM/T0020—2023

目次

前言··························································································································Ⅲ

引言··························································································································Ⅳ

1范圍·······················································································································1

2規(guī)范性引用文件········································································································1

3術(shù)語(yǔ)和定義··············································································································1

4縮略語(yǔ)····················································································································1

5算法標(biāo)識(shí)和數(shù)據(jù)結(jié)構(gòu)··································································································2

5.1標(biāo)識(shí)定義···········································································································2

5.2數(shù)據(jù)結(jié)構(gòu)定義·····································································································2

6證書應(yīng)用綜合服務(wù)接口定位、分類和要求········································································2

6.1證書應(yīng)用綜合服務(wù)接口在公鑰密碼應(yīng)用技術(shù)體系框架中的位置······································2

6.2證書應(yīng)用綜合服務(wù)接口分類···················································································2

6.3客戶端服務(wù)接口··································································································2

6.4服務(wù)器端服務(wù)接口·······························································································3

6.5數(shù)據(jù)格式要求·····································································································3

7證書應(yīng)用綜合服務(wù)接口定義·························································································3

7.1客戶端COM組件接口··························································································3

7.2服務(wù)器端COM組件接口·····················································································13

7.3服務(wù)器端Java組件接口·······················································································24

7.4客戶端JavaScript腳本接口···················································································35

附錄A(規(guī)范性)證書應(yīng)用綜合服務(wù)接口錯(cuò)誤代碼定義·······················································46

附錄B(資料性)證書應(yīng)用綜合服務(wù)接口典型部署模型·······················································49

附錄C(資料性)證書應(yīng)用綜合服務(wù)接口集成示例·····························································50

附錄D(資料性)客戶端JavaScript腳本接口異步調(diào)用示例說(shuō)明············································52

參考文獻(xiàn)····················································································································53

GM/T0020—2023

前言

本文件按照GB/T1.1—2020《標(biāo)準(zhǔn)化工作導(dǎo)則第1部分:標(biāo)準(zhǔn)化文件的結(jié)構(gòu)和起草規(guī)則》的規(guī)

定起草。

本文件代替GM/T0020—2012《證書應(yīng)用綜合服務(wù)接口規(guī)范》,與GM/T0020—2012相比,除結(jié)

構(gòu)調(diào)整和編輯性改動(dòng)外,主要技術(shù)變化如下:

a)刪除了術(shù)語(yǔ)“數(shù)字證書”(見2012年版的3.1);

b)增加了Base64格式數(shù)據(jù)的更明確描述(見6.5);

c)增加了接口“證書登出SOF_Logout”(見7.1.35)、“證書登錄狀態(tài)檢測(cè)SOF_IsLogin”(見

7.1.36);

d)增加了接口“數(shù)據(jù)摘要SOF_HashData”(見7.1.31、7.2.37、7.3.38)“文件摘要SOF_HashFile”

(見7.1.32、7.2.38、7.3.39)“摘要值簽名SOF_SignHashData”(見7.1.33、7.2.39、7.3.40)“摘要

值驗(yàn)簽SOF_VerifySignedHashData”(見7.1.34、7.2.40、7.3.41);

e)刪除了接口“SOF_EncryptFile”(見2012年版的7.1.23)“SOF_DecryptFile”(見2012年版的

7.1.24);

f)增加了“客戶端JavaScript腳本接口”(見7.4)。

請(qǐng)注意本文件的某些內(nèi)容可能涉及專利。本文件的發(fā)布機(jī)構(gòu)不承擔(dān)識(shí)別專利的責(zé)任。

本文件由密碼行業(yè)標(biāo)準(zhǔn)化技術(shù)委員會(huì)提出并歸口。

本文件起草單位:北京數(shù)字認(rèn)證股份有限公司、格爾軟件股份有限公司、北京海泰方圓科技股份有

限公司、上海市數(shù)字證書認(rèn)證中心有限公司、無(wú)錫江南信息安全工程技術(shù)中心、中電科網(wǎng)絡(luò)安全科技股

份有限公司、長(zhǎng)春吉大正元信息技術(shù)股份有限公司、興唐通信科技有限公司、山東得安信息技術(shù)有限公

司、北京國(guó)脈信安科技有限公司、國(guó)家密碼管理局商用密碼檢測(cè)中心、中國(guó)電子技術(shù)標(biāo)準(zhǔn)化研究院。

本文件主要起草人:劉偉、趙永省、劉平、劉蕾、李述勝、鄭強(qiáng)、譚武征、蔣紅宇、柳增壽、許濤、寇建

波、趙麗麗、王妮娜、馬洪富、孔凡玉、袁峰、羅鵬、肖秋林、張紹博、上官曉麗、蔡一鳴、黃晶晶。

本文件及其所代替文件的歷次版本發(fā)布情況為:

——2012年首次發(fā)布版為GM/T0020—2012;

——本次是第一次修訂。

GM/T0020—2023

引言

本文件依托于GM/T0019《通用密碼服務(wù)接口規(guī)范》,為應(yīng)用層規(guī)定了統(tǒng)一的高級(jí)密碼服務(wù)接口。

證書應(yīng)用綜合服務(wù)接口為應(yīng)用系統(tǒng)提供簡(jiǎn)潔、易用的證書應(yīng)用接口,屏蔽了各類密碼設(shè)備(服務(wù)器

密碼機(jī)和智能密碼鑰匙等)的設(shè)備差異性,以及各類密碼設(shè)備的密碼應(yīng)用接口之間的差異性,實(shí)現(xiàn)應(yīng)用

與密碼設(shè)備無(wú)關(guān)性,可簡(jiǎn)化應(yīng)用開發(fā)的復(fù)雜性。證書應(yīng)用綜合服務(wù)接口分成客戶端服務(wù)接口和服務(wù)器

端服務(wù)接口兩類,可滿足B/S和C/S等多種架構(gòu)的應(yīng)用系統(tǒng)的調(diào)用需求,有利于密碼服務(wù)接口產(chǎn)品的

開發(fā),有利于應(yīng)用系統(tǒng)在密碼服務(wù)過(guò)程中的集成和實(shí)施,有利于實(shí)現(xiàn)各應(yīng)用系統(tǒng)的互聯(lián)互通。

GM/T0020—2023

證書應(yīng)用綜合服務(wù)接口規(guī)范

1范圍

本文件規(guī)定了面向證書應(yīng)用的綜合服務(wù)接口。

本文件適用于公鑰密碼應(yīng)用技術(shù)體系下密碼應(yīng)用服務(wù)產(chǎn)品的開發(fā),密碼應(yīng)用支撐平臺(tái)的研制及檢

測(cè),也可用于指導(dǎo)直接使用密碼設(shè)備和密碼服務(wù)的應(yīng)用系統(tǒng)的集成和開發(fā)。

2規(guī)范性引用文件

下列文件中的內(nèi)容通過(guò)文中的規(guī)范性引用而構(gòu)成本文件必不可少的條款。其中,注日期的引用文

件,僅該日期對(duì)應(yīng)的版本適用于本文件;不注日期的引用文件,其最新版本(包括所有的修改單)適用于

本文件。

GB/T25061—2020信息安全技術(shù)XML數(shù)字簽名語(yǔ)法與處理規(guī)范

GM/T0006密碼應(yīng)用標(biāo)識(shí)規(guī)范

GM/T0009SM2密碼算法使用規(guī)范

GM/T0010SM2密碼算法加密簽名消息語(yǔ)法規(guī)范

GM/T0015基于SM2密碼算法的數(shù)字證書格式規(guī)范

GM/T0019通用密碼服務(wù)接口規(guī)范

GM/

溫馨提示

  • 1. 本站所提供的標(biāo)準(zhǔn)文本僅供個(gè)人學(xué)習(xí)、研究之用,未經(jīng)授權(quán),嚴(yán)禁復(fù)制、發(fā)行、匯編、翻譯或網(wǎng)絡(luò)傳播等,侵權(quán)必究。
  • 2. 本站所提供的標(biāo)準(zhǔn)均為PDF格式電子版文本(可閱讀打?。驍?shù)字商品的特殊性,一經(jīng)售出,不提供退換貨服務(wù)。
  • 3. 標(biāo)準(zhǔn)文檔要求電子版與印刷版保持一致,所以下載的文檔中可能包含空白頁(yè),非文檔質(zhì)量問題。

最新文檔

評(píng)論

0/150

提交評(píng)論