期刊文献+

一种用于管理撤销证书的二进制树算法 被引量:1

Using Binary Tree to Manage Revoked Certificates
下载PDF
导出
摘要 针对管理撤销证书的2 3树中,证书验证请求回应和证书验证过程的复杂性问题,提出了采用二进制树来代替2 3树,对撤销的证书进行管理,简化了树的结构和节点的属性。利用节点的全局编号,方便了节点在树中的定位和索引;利用唯一路径编号,简化了证书的相邻性验证过程。从而提高了证书验证过程中,服务端证书验证请求回应和客户端证书验证的计算效率,使得应用二进制树对撤销证书进行管理向实用化方向迈进了一步。 In view of the complexity of certificate verification response and certificate verification in the 2-3 tree for managing revoked certificates, the binary tree is used to replace the 2-3 tree to manage the revoked certificates. It can simplify the structure of the tree and the attribute of the nods. By using the global number of the nods, locating and indexing of the nods become easy. And by using unique numbering of paths, processing of neighbourship verification is simplified greatly. Thus, the computing efficiency of certificate verification response of the server and certificate verification of the client is improved, and using the binary tree to manage revoked certificates becomes more practical.
出处 《铁道学报》 EI CAS CSCD 北大核心 2005年第2期133-136,共4页 Journal of the China Railway Society
基金 通信与信息系统北京市重点实验室资助(SYS100040408)
关键词 证书验证 撤销证书 二进制树 证书管理 certificate verification revoked certificates binary tree certificate management
  • 相关文献

参考文献6

  • 1Andrew Nash,William Duane,Celia Joseph,Derek Brink. PKI:Implementing and Managing ESecurity[M]. McGrawHill Education,2001.
  • 2Housley R, Ford W, Polk W, Solo D. RFC2459 Internet X.509 Public Key Infrastructure: Certificate and CRL Profile[EB/OL]. http://www.rfc-editor.org/rfc/rfc2459.txt, 1999.
  • 3Myers M, Ankney R, Malpani A, Galperin S, Adams C. RFC 2560-X.509 Internet Public Key Infrastructure: Online Certificate Status Protocol-OCSP. http://www.rfc-editor.org/rfc/rfc2560.txt, 1999.
  • 4Kocher P C. On Certificate Revocation and Validation[A].In: International Conference on Financial Cryptography(FC98)[C]. Lecture Notes in Computer Science, number1465, 1988. 172-177.
  • 5Naor M, Nissim K. Certificate Revocation and Certificate Update[J]. IEEE Journal on Selected Areas in Communications, 2000,18(4) :561-560.
  • 6Jose L. Munoz, Jordi Forne, Oscar Esparza, Miguel Soriano. Implementation of an Efficient Authenticated Dictionary for Certificate Revocation[A]. Proceedings of the Eighth IEEE International Symposium on Computers and Communication (ISCC ' 03 ) [C]. 2003.

同被引文献10

  • 1黄迎春,何良生,蒋凡.对2-3树证书撤销方法的改进[J].计算机科学,2005,32(6):65-68. 被引量:2
  • 2李敏,王尚平,马晓静,秦慧.分级群签名[J].计算机应用研究,2006,23(9):88-91. 被引量:4
  • 3CHAUM D, VAN HEYST E. Group signatures[ C]//In Eurocryptgl, Berlin: Springer-Verlag, 1991 : 257-265.
  • 4ATENIESE G, SONG D, TSUDIK G. Quasi-efficient revocation of group signatures [ C ~ // Proceedings of Financial Cryptography 2002. Berlin: Springer-Verlag, 2003 : 183-197.
  • 5MERKLE R C. A certified digital signature[ C ] ff Advances in Cryptology-Crypto'89 Proceedings. Berlin: Springer-Verlag, 1990 : 218-238.
  • 6KOCHER P C. On certificate revocation and validation [ C ] //Proceedings of the 2~d International Conference on Financial Cryptography, Berlin: Springer-Verlag, 1998: 172-177.
  • 7MUNOZ J L, FORNE J, ESPARZA O, et al. Certificate revocation system implementation based on the Merkle hash tree[J]. International Journal of Information Security, 2004, 2 (2) : 110-124.
  • 8LIEW J, SUDHEER V. Authentication methods for wireless electronic micropayments[ EB/OL]. [2005-07-10] http.// islab, oregonstate, edu/koc/ece475/02Report/LV, pdf.
  • 9吴克力,孙抗毒,朱保平,刘凤玉.一种动态群签名方案[J].计算机应用与软件,2007,24(9):26-29. 被引量:7
  • 10张跃宇,庞辽军,苏万力,王育民.一种高效的本地验证者撤销群签名方案[J].西安电子科技大学学报,2007,34(5):818-822. 被引量:4

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部