摘要
在分析分段增量CRL证书撤销机制的基础上,针对网络稳定性差、带宽有限的环境,提出了一种分布式的分段增量CRL机制。新机制能有效降低信任实体对CRL库的请求率、分散网络中CRL传输的数据流、保证用户及时获取最新的证书撤销信息,并且实现容易。
Based on the analysis of segmented Delta-CRL certificate revocation mechanism, a distributed segmented Delta-CRL. mechanism is put forward for the environment with bad stability and limited bandwidth. The new mechanism can decrease relying parties' request rates for CRL depository efficiently,decentralize the data stream of CRL in network, and make sure that relying parties could retrieve fresh revocation information. It can be implemented easily,too.
出处
《计算机安全》
2009年第6期24-26,共3页
Network & Computer Security