期刊文献+

基于PKI的证书撤销树方案的研究

Certificate Revocation Tree Scheme Based on PKI
原文传递
导出
摘要 文中介绍了当前公钥基础设施中静态证书撤销树、线索二叉排序Hash树、平衡二叉排序Hash树以及2-3Hash树方案。对具有一定规模结点的上述后三种方案进行了实验模拟,实验结果表明:平衡二叉排序Hash树方案的证书验证长度较短,但是在树更新时,耗费的时间比其它两种方案长;2-3Hash树方案在验证已撤销证书的有效性时,其验证长度与平衡二叉排序Hash树方案的证书验证长度相差不大,但在验证有效证书的有效性时,其验证长度大约是平衡二叉排序Hash树方案的证书验证长度的2倍。 The principal PKI schemes are described in this paper, including the static certificate revocation tree, threaded binary sorted Hash tree, the balanced binary sorted Hash tree and 2-3 Hash tree, and the subsequent three schemes with certain amount of nodes are simulated. The result shows that the balanced binary sorted Hash tree scheme has shorter certificate verification length, but requires longer time when renewing the certificate; the certificate-verification length of the 2-3 Hash tree one is more or less the same with that of the balanced binary sorted Hash tree scheme, but the later's verification length is almost twice the former's when verifying the validity of the valid certificates.
出处 《通信技术》 2009年第11期99-101,共3页 Communications Technology
关键词 公钥基础设施 线索二叉排序Hash树 平衡二叉排序Hash树 2-3Hash树 public key infrastructure certificate revocation scheme balanced binary sorted hash tree 2-3Hash tree
  • 相关文献

参考文献5

二级参考文献12

  • 1蒋定德,陈运,陈伟建.PKI机构证书撤销的研究[J].信息安全与通信保密,2005,27(3):92-95. 被引量:5
  • 2周建峰,马玉祥,欧阳雄.PKI信任模型研究[J].电子科技,2006,19(4):75-78. 被引量:7
  • 3CarlisleAdamsSteveLloyd 冯登国 译.公开密钥基础设施-概念、标准和实施[M].北京:人民邮电出版社,2001..
  • 4严蔚敏,数据结构,1991年,118页
  • 5Housley R. Internet X. 509 public key infrastructure certificate and certificate revocation list (CRL) profile[S].RFC3280, 2002.
  • 6Housley R. Internet X. 509 public key infrastructure, certificate and CRL profile[S]. RFC2459, 1999.
  • 7Aradee Rojanapasakorn,Chanboon Sathitwiriyawong.A Simulation Study of Over-Issuing Delta-Crlswith Distribution Points.Proceedings of the IEEE TENCON 2004,B:21-24.
  • 8Micali S.Eficient certificate revocation[EB/OL].Technical MemoMIT/LCS/M-542b,Massachusetts Institute of Technology,1996.
  • 9R C Merkle.A certified digital Signture.In:G Brassard ed.Advances in Cryptology-CRYPTO89,volume 435 of Lecture Notes in Compute Science,Springer-Verlag,1990:218-238.
  • 10Myers M R,Ankney A,Malpani S Galperin,et al.X.509 Internet public Key Infrastructure On-line Certificate Status Prctocol-OCSP[S].[RFC2560],1999.

共引文献16

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部