arrow
Return

Certificate revocation and certificate update

delete2000-04-01
delete151
PRE
AI
M
Moni Naor
K
Kobbi Nissim
DOI:10.1109/49.839932delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
We present a solution for the problem of certificate revocation, This solution represents certificate revocation lists by authenticated dictionaries that support: 1) efficient verification whether a certificate is In the list or not and 2) efficient updates (adding/removing certificates from the list). The suggested solution gains in scalability, communication costs, robustness to parameter changes, and update rate. Comparisons to the following solutions land variants) are Included: traditional certificate revocation lists (CRL's), Micali's certificate revocation system (CRS), and Kocher's certificate revocation trees (CRT). We also consider a scenario in which certificates are not revoked, but frequently issued for short-term periods. Based on the authenticated dictionary scheme, a certificate update scheme is presented in which all certificates are updated by a common message. The suggested solutions for certificate revocation and certificate update problems are better than current solutions with respect to communication costs, update rate, and robustness to changes In parameters, and are compatible, e.g., with X.500 certificates.
Keywords:
authenticated data structures
certificates
PKI
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Journal on Selected Areas in Communications cover
IEEE Journal on Selected Areas in Communications
IF:
17.2
Papers:
6.4K
Citations:
3.1W

Organization

No organization information available