SESSION VÀ XÁC THỰC PKCS#11

Mô hình vai trò, đăng nhập và đồng thời

Provider xác định trạng thái đăng nhập áp dụng toàn token hay theo session, cách xác thực theo ngữ cảnh hoạt động và hành vi khi failover.

01

Mô hình xác thực

AreaRequired statement
RolesSecurity Officer, User and context-specific role support
Login scopeToken-wide versus session-specific behavior
PIN lifecycleInitialization, change, retry counter and lockout
Step-upLocal PIN, remote approval or context login binding
Session expiryIdle/absolute timeout and re-authentication
PoolingSafe reuse rules and application-server guidance

02

Đồng thời và HA

  • RO/RW session limits.
  • Multi-thread synchronization requirements.
  • Multi-process object visibility.
  • Token removal and handle invalidation.
  • HA failover and session recreation.
  • Long-running signing cancellation behavior.