首页> 外文会议>Information and Communications Security >An Efficient Public-Key Framework
【24h】

An Efficient Public-Key Framework

机译:高效的公钥框架

获取原文

摘要

Public-key certificates play an important role in binding the public key with the identity of the owner of the corresponding private key. A certificate might be revoked before its scheduled expiry date by the issuing CA. Efficient and timely distribution of certificate revocation information is a big challenge facing the PKI providers. Existing certificate revocation schemes place a considerable processing, communication, and storage overheads on the CA as well as the relying parties. To improve the current situation, we propose a revocation-free public-key framework, in which the maximum lifetime of a certificate is divided into short periods and the certificate could expire at the end of any period under the control of the certificate owner (or his manager in a corporate environment). The verifier can check the status of such a certificate without retrieving the revocation information from the CA. The new framework is especially useful for applications on wireless devices that are unable to make simultaneous connections. The new framework could be easily integrated into existing PKI products that support X.509-based certificates.
机译:公钥证书在将公钥与相应私钥所有者的身份绑定方面起着重要作用。颁发证书的CA可能会在证书的预定到期日期之前将其吊销。高效,及时地分发证书吊销信息是PKI提供商所面临的一大挑战。现有的证书吊销方案对CA以及依赖方造成了相当大的处理,通信和存储开销。为了改善目前的状况,我们提出了一个无废止的公钥框架,在该框架中,将证书的最长生存期划分为较短的期限,并且该证书可以在证书所有者的控制下在任何期限结束时到期(或公司环境中的经理)。验证者可以检查此类证书的状态,而无需从CA检索吊销信息。新框架对于无法进行同时连接的无线设备上的应用程序特别有用。新框架可以轻松地集成到支持基于X.509证书的现有PKI产品中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号