參考資料
References
ETSI EN 319 403, Electronic Signatures and Infrastructures (ESI); Trust Service Provider Conformity Assessment - Requirements for conformity assessment bodies assessing Trust Service Providers.
ETSI EN 319 403,電子簽章與基礎建設(Electronic Signatures and Infrastructures,ESI);信賴服務提供者符合性評鑑 - 針對評鑑信賴服務提供者的符合性評鑑機構之要求。
ETSI EN 319 411-1, Electronic Signatures and Infrastructures (ESI); Policy and security requirements for Trust Service Providers issuing certificates; Part 1: General requirements.
ETSI EN 319 411-1,電子簽章與基礎建設(Electronic Signatures and Infrastructures,ESI);簽發憑證之信賴服務提供者的政策與安全要求;第 1 部分:一般要求。
FIPS 140-2, Federal Information Processing Standards Publication - Security Requirements For Cryptographic Modules, Information Technology Laboratory, National Institute of Standards and Technology, May 25, 2001.
FIPS 140-2,聯邦資訊處理標準發行物 - 密碼模組安全要求,美國國家標準與技術研究院資訊技術實驗室,2001 年 5 月 25 日。
FIPS 140-3, Federal Information Processing Standards Publication - Security Requirements For Cryptographic Modules, Information Technology Laboratory, National Institute of Standards and Technology, March 22, 2019.
FIPS 140-3,聯邦資訊處理標準發行物 - 密碼模組安全要求,美國國家標準與技術研究院資訊技術實驗室,2019 年 3 月 22 日。
FIPS 186-5, Federal Information Processing Standards Publication - Digital Signature Standard (DSS), Information Technology Laboratory, National Institute of Standards and Technology, February 2023.
FIPS 186-5,聯邦資訊處理標準發行物 - 數位簽章標準(Digital Signature Standard,DSS),美國國家標準與技術研究院資訊技術實驗室,2023 年 2 月。
ISO 21188:2018, Public key infrastructure for financial services — Practices and policy framework.
ISO 21188:2018,金融服務之公開金鑰基礎建設 —— 實務與政策框架。
Network and Certificate System Security Requirements, Version 1.7, available at https://cabforum.org/network-security-requirements/
網路與憑證系統安全要求,1.7 版,可參閱 https://cabforum.org/network-security-requirements/
NIST SP 800-89, Recommendation for Obtaining Assurances for Digital Signature Applications, https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-89.pdf.
NIST SP 800-89,數位簽章應用之取得保證性的建議,https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-89.pdf。
RFC 2119, Request for Comments: 2119, Key words for use in RFCs to Indicate Requirement Levels. S. Bradner. March 1997.
RFC 2119,徵求修正意見書:2119, RFC 中用於標示需求層級之關鍵字。S. Bradner,1997 年 3 月。
RFC 3492, Request for Comments: 3492, Punycode: A Bootstring encoding of Unicode for Internationalized Domain Names in Applications (IDNA). A. Costello. March 2003.
RFC 3492,徵求修正意見書:3492,Punycode:用於應用程式的國際化網域名稱(IDNA)之 Unicode 的 Bootstring 編碼。A. Costello,2003 年 3 月。
RFC 3647, Request for Comments: 3647, Internet X.509 Public Key Infrastructure: Certificate Policy and Certification Practices Framework. S. Chokhani, et al. November 2003.
RFC 3647,徵求修正意見書:3647,網際網路 X.509 公開金鑰基礎建設:憑證政策(CP)與憑證實務作業基準(CPS)框架。S. Chokhani 等,2003 年 11 月。
RFC 3912, Request for Comments: 3912, WHOIS Protocol Specification. L. Daigle. September 2004.
RFC 3912,徵求修正意見書:3912,WHOIS 協定規範。L. Daigle,2004 年 9 月。
RFC 3986, Request for Comments: 3986, Uniform Resource Identifier (URI): Generic Syntax. T. Berners-Lee, et al. January 2005.
RFC 3986,徵求修正意見書:3986,統一資源識別碼(URI):通用語法。T. Berners-Lee 等,2005 年 1 月。
RFC 4035, Request for Comments: 4035, Protocol Modifications for the DNS Security Extensions. R. Arends, et al. March 2005.
RFC 4035,徵求修正意見書:4035,DNS 安全性擴充(DNSSEC)之協定修改。R. Arends 等,2005 年 3 月。
RFC 4509, Request for Comments: 4509, Use of SHA-256 in DNSSEC Delegation Signer (DS) Resource Records (RRs). W. Hardaker. May 2006.
RFC 4509,徵求修正意見書:4509,於 DNSSEC 委派簽章(DS)資源紀錄(RR)中使用 SHA-256。W. Hardaker,2006 年 5 月。
RFC 5019, Request for Comments: 5019, The Lightweight Online Certificate Status Protocol (OCSP) Profile for High-Volume Environments. A. Deacon, et al. September 2007.
RFC 5019,徵求修正意見書:5019,用於高流量環境之輕量級線上憑證狀態協定(OCSP)剖繪檔。A. Deacon 等,2007 年 9 月。
RFC 5155, Request for Comments: 5155, DNS Security (DNSSEC) Hashed Authenticated Denial of Existence. B. Laurie, et al. March 2008.
RFC 5155,徵求修正意見書:5155,DNS 安全(DNSSEC)雜湊化的可驗證之不存在性。B. Laurie 等,2008 年 3 月。
RFC 5280, Request for Comments: 5280, Internet X.509 Public Key Infrastructure: Certificate and Certificate Revocation List (CRL) Profile. D. Cooper, et al. May 2008.
RFC 5280,徵求修正意見書:5280,網際網路 X.509 公開金鑰基礎建設:憑證與憑證廢止清冊(CRL)剖繪檔。D. Cooper 等,2008 年 5 月。
RFC 5702, Request for Comments: 5702, Use of SHA-2 Algorithms with RSA in DNSKEY and RRSIG Resource Records for DNSSEC. J. Jansen. October 2009.
RFC 5702,徵求修正意見書:5702,於 DNSSEC 之 DNSKEY 與 RRSIG 資源紀錄中結合 RSA 使用 SHA-2 演算法。J. Jansen,2009 年 10 月。
RFC 5890, Request for Comments: 5890, Internationalized Domain Names for Applications (IDNA): Definitions and Document Framework. J. Klensin. August 2010.
RFC 5890,徵求修正意見書:5890,應用程式的國際化網域名稱(IDNA):定義與文件框架。J. Klensin,2010 年 8 月。
RFC 5952, Request for Comments: 5952, A Recommendation for IPv6 Address Text Representation. S. Kawamura, et al. August 2010.
RFC 5952,徵求修正意見書:5952,IPv6 位址文本表示法之建議。S. Kawamura 等,2010 年 8 月。
RFC 6840, Request for Comments: 6840, Clarifications and Implementation Notes for DNS Security (DNSSEC). S. Weiler, et al. February 2013.
RFC 6840,徵求修正意見書:6840,DNS 安全(DNSSEC)之說明與實作須知。S. Weiler 等,2013 年 2 月。
RFC 6960, Request for Comments: 6960, X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSP. S. Santesson, et al. June 2013.
RFC 6960,徵求修正意見書:6960,X.509 網際網路公開金鑰基礎建設之線上憑證狀態協定 - OCSP。S. Santesson 等,2013 年 6 月。
RFC 6962, Request for Comments: 6962, Certificate Transparency. B. Laurie, et al. June 2013.
RFC 6962,徵求修正意見書:6962,憑證透明度(Certificate Transparency)。B. Laurie 等,2013 年 6 月。
RFC 7231, Request For Comments: 7231, Hypertext Transfer Protocol (HTTP/1.1): Semantics and Content. R. Fielding, et al. June 2014.
RFC 7231,徵求修正意見書:7231,超文本傳輸協定(HTTP/1.1):語義與內容。R. Fielding 等,2014 年 6 月。
RFC 7482, Request for Comments: 7482, Registration Data Access Protocol (RDAP) Query Format. A. Newton, et al. March 2015.
RFC 7482,徵求修正意見書:7482,註冊資料存取協定(RDAP)的查詢格式。A. Newton 等,2015 年 3 月。
RFC 7538, Request For Comments: 7538, The Hypertext Transfer Protocol Status Code 308 (Permanent Redirect). J. Reschke. April 2015.
RFC 7538,徵求修正意見書:7538,超文本傳輸協定狀態碼 308(永久重定向)。J. Reschke,2015 年 4 月。
RFC 7565, Request for Comments: 7565, The ‘acct’ URI Scheme. P. Saint-Andre. May 2015.
RFC 7565,徵求修正意見書:7565,「acct」URI Scheme。P. Saint-Andre,2015 年 5 月。
RFC 8499, Request for Comments: 8499, DNS Terminology. P. Hoffman, et al. January 2019.
RFC 8499,徵求修正意見書:8499,DNS 術語。P. Hoffman 等,2019 年 1 月。
RFC 8555, Request for Comments: 8555, Automatic Certificate Management Environment (ACME). R. Barnes, et al. March 2019.
RFC 8555,徵求修正意見書:8555,自動憑證更新環境(ACME)。R. Barnes 等,2019 年 3 月。
RFC 8657, Request for Comments: 8657, Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method Binding. H. Landau, et al. November 2019.
RFC 8657,徵求修正意見書:8657,用於繫結 Account URI 與自動憑證更新環境(ACME)方法之授權憑證機構簽發憑證(CAA)紀錄的擴充功能。H. Landau 等,2019 年 11 月。
RFC 8659, Request for Comments: 8659, DNS Certification Authority Authorization (CAA) Resource Record. P. Hallam-Baker, et al. November 2019.
RFC 8659,徵求修正意見書:8659,DNS 授權憑證機構簽發憑證(CAA)的資源紀錄。P. Hallam-Baker 等,2019 年 11 月。
RFC 8738, Request for Comments: 8738, Automated Certificate Management Environment (ACME) IP Identifier Validation Extension. R.B.Shoemaker, Ed. February 2020.
RFC 8738,徵求修正意見書:8738,自動憑證更新環境(ACME)之 IP 識別字驗證擴充欄位。R.B.Shoemaker 編,2020 年 2 月。
RFC 8954, Request for Comments: 8954, Online Certificate Status Protocol (OCSP) Nonce Extension. M. Sahni, Ed. November 2020.
RFC 8954,徵求修正意見書:8954,線上憑證狀態協定(OCSP)之 Nonce 擴充欄位。M. Sahni 編,2020 年 11 月。
RFC 9082, Request for Comments: 9082, Registration Data Access Protocol (RDAP) Query Format. S. Hollenbeck, A. Newton, et al. June 2021.
RFC 9082,徵求修正意見書:9082,註冊資料存取協定(RDAP)的查詢格式。S. Hollenbeck、A. Newton 等,2021 年 6 月。
WebTrust for Certification Authorities, SSL Baseline with Network Security, available at https://www.cpacanada.ca/en/business-and-accounting-resources/audit-and-assurance/overview-of-webtrust-services/principles-and-criteria.
WebTrust 憑證機構稽核,SSL 基本要求與網路安全,可參閱 https://www.cpacanada.ca/en/business-and-accounting-resources/audit-and-assurance/overview-of-webtrust-services/principles-and-criteria。
WebTrust Principles and Criteria for Certification Authorities – SSL Baseline.
WebTrust 憑證機構原則與準則 – SSL 基本要求。
X.509, Recommendation ITU-T X.509 (08/2005) | ISO/IEC 9594-8:2005, Information technology – Open Systems Interconnection – The Directory: Public-key and attribute certificate frameworks.
X.509,ITU-T 建議書 X.509 (08/2005) | ISO/IEC 9594-8:2005,資訊技術 – 開放系統之連接 – 目錄:公開金鑰與屬性憑證框架。