首页> 外文期刊>Decision support systems >Digital certificate management: Optimal pricing and CRL releasing strategies
【24h】

Digital certificate management: Optimal pricing and CRL releasing strategies

机译:数字证书管理:最优定价和CRL发布策略

获取原文
获取原文并翻译 | 示例

摘要

The fast growth of e-commerce and online activities places increasing needs for authentication and secure communication to enable information exchange and online transactions. The public key infrastructure (PKI) provides a promising foundation for meeting such demand, in which certificate authorities (CAs) provide digital certificates. In practice, it is critical to understand consumer purchasing and revocation behaviors so that CAs can better manage the digital certificates and its CRL releasing process. To address this problem, we analytically model a CA's pricing and revocation releasing strategies taking into consideration the users' rational decisions. The model provides solutions two main research questions: (1) How should the CA price the digital certificates? The the price of the digital certificate should be determined by the expected losses of the user's IT system, and the number of certificate revocations per period is expected to decrease over time during the lifecycle of the certificate. This result is supported by the empirical data from Verisign. (2) How should the CA we further propose a dynamic CRL releasing policy that suggests that the optimal releasing intervals within the lifecycle of a certificate should increase over time.
机译:电子商务和在线活动的快速增长对身份验证和安全通信提出了越来越高的要求,以实现信息交换和在线交易。公钥基础结构(PKI)为满足这种需求提供了有希望的基础,其中证书颁发机构(CA)提供数字证书。在实践中,了解消费者的购买和撤销行为至关重要,这样CA才能更好地管理数字证书及其CRL发布过程。为了解决此问题,我们在分析CA的定价和撤销释放策略时,要考虑到用户的合理决策。该模型为解决方案提供了两个主要的研究问题:(1)CA应如何为数字证书定价?数字证书的价格应由用户的IT系统的预期损失确定,并且在证书的生命周期内,每个时期的证书吊销数量预计会随着时间的推移而减少。来自Verisign的经验数据支持此结果。 (2)CA应该如何进一步提出动态的CRL发布策略,以建议证书生命周期内的最佳发布间隔应随时间增加。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号