期刊文献+

一种分布式的分段增量CRL机制

A Distributed Segmented Delta-CRL Mechanism
下载PDF
导出
摘要 在分析分段增量CRL证书撤销机制的基础上,针对网络稳定性差、带宽有限的环境,提出了一种分布式的分段增量CRL机制。新机制能有效降低信任实体对CRL库的请求率、分散网络中CRL传输的数据流、保证用户及时获取最新的证书撤销信息,并且实现容易。 Based on the analysis of segmented Delta-CRL certificate revocation mechanism, a distributed segmented Delta-CRL. mechanism is put forward for the environment with bad stability and limited bandwidth. The new mechanism can decrease relying parties' request rates for CRL depository efficiently,decentralize the data stream of CRL in network, and make sure that relying parties could retrieve fresh revocation information. It can be implemented easily,too.
出处 《计算机安全》 2009年第6期24-26,共3页 Network & Computer Security
关键词 公钥基础设施 证书撤销列表 目录服务 PKI CRL Directory Service
  • 相关文献

参考文献1

二级参考文献9

  • 1S Berkovits,S Chokhani,J Furlong.Public Key Infrastructure Study:Final Report[R].MITRE Corporation for NIST,1994.
  • 2ISO/IEC.Information Technology-Open Systems Interconnection-The Directory:Public-Key and Attribute Certificate Frameworks[S].2002.
  • 3RFC3281. X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile[S].2002.
  • 4RFC2560.X.509 Internet Public Key Infrastructure On-line Certificate Status Protocol-OCSP[S].1999.
  • 5P Kocher.On Certificate Revocaiton and Validation[J].Financial Cryptography,1998,1465:172-177.
  • 6S Micali.Efficient Certificate Revocation[R].MIT Laboratory for Computer Science:Technical Report TM-542b,1996.
  • 7D Cooper.A More Efficient Use of Delta-CRLs[J].Security and Privacy,2000:190-202.
  • 8D A Cooper.A Model of Certificate Revocation[C].Fifteenth Annual Computer Security Applications Conference,1999.256-264.
  • 9P McDaniel,S Jamin.Windowed Certificate Revocation[J].INFOCOM,2000,3:1406-1414.

共引文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部