CSR和SSL证书。和私钥
我使用密钥对创建了CSR。我相信CSR只会包括我的公钥。然后我将企业社会责任送往ca。我从CA获得了证书。 当我看证书时。我可以看到它具有序列号和一些身份信息。
可以说,我使用我的私钥创建了此序列号和身份信息的JWS(JSON Web签名),然后将其发送给CA。 他们如何解密(或验证)? (因为我不相信他们有我的私钥。)
I created CSR using my key pair. and I believe that CSR will only include my Public Key. and I sent the CSR to CA. and I got certificate from the CA.
When I look at certificate. I can see that it has serial number and some identity information.
Lets say, I create JWS(JSON Web Signature) of this serial number and identity information with my private key, and send it to CA.
How do they decrypt (or validate) it? (Because I don't believe that they have my private key.)
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
data:image/s3,"s3://crabby-images/d5906/d59060df4059a6cc364216c4d63ceec29ef7fe66" alt="扫码二维码加入Web技术交流群"
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
哦,我明白了,当我用私钥发送JW时。我不使用该钥匙进行加密。我使用我的私钥签署消息。
然后,CA知道我由我的私钥签名。因为他们有公钥。序列号实际上并未在JW中加密,而是由我签名的。
Oh.. I see, When I send JWS with my private key. I don't use that key for encryption. I use my private key to sign the message.
then CA will know that I signed by my private key. because they have public key. and Serial Number is not actually encrypted in JWS but signed by me.