首页> 外国专利> Method and system for checking revocation status of digital certificates in a virtualization environment

Method and system for checking revocation status of digital certificates in a virtualization environment

机译:在虚拟化环境中检查数字证书吊销状态的方法和系统

摘要

The present invention discloses a method and a system for checking revocation status of digital certificates in a virtualization environment. The method includes: 1) Setting up multiple virtual machines in a host computer; setting up a certificate revocation list manager within the virtual machine monitor of the host computer; 2) The certificates relying party in the virtual machines sends a service request for checking certificate revocation status to the certificate revocation list manager; 3) The certificate revocation list manager searches locally for the CRL file corresponding to the service request for checking certificate revocation status: a) If such a corresponding CRL file exists, the CRL file is returned to the certificate relying party in the virtual machines; or, the certificate revocation list manager checks whether the corresponding certificate serial number exists in the CRL file, then returns the resu b) if the corresponding CRL file does not exist, the corresponding CRL file is downloaded and verified according to the configuration file; then the CRL file is returned to the certificate relying party in the virtual machines; or, the certificate revocation list manager checks whether the corresponding certificate serial number exists in the CRL file, then returns the result. The present invention greatly improves the efficiency of checking revocation status of certificates.
机译:本发明公开了一种用于在虚拟化环境中检查数字证书的撤销状态的方法和系统。该方法包括:1)在主机中设置多个虚拟机;在主机的虚拟机监视器中设置证书吊销列表管理器; 2)虚拟机中的证书依赖方向证书撤销列表管理器发送检查证书撤销状态的服务请求; 3)证书吊销列表管理器在本地搜索与检查证书吊销状态的服务请求相对应的CRL文件:a)如果存在相应的CRL文件,则将CRL文件返回给虚拟机中的证书依赖方;或者,证书吊销列表管理器检查CRL文件中是否存在相应的证书序列号,然后返回结果; b)如果对应的CRL文件不存在,则根据配置文件下载并验证对应的CRL文件;然后将CRL文件返回给虚拟机中的证书依赖方;或者,证书吊销列表管理器检查CRL文件中是否存在相应的证书序列号,然后返回结果。本发明大大提高了检查证书撤销状态的效率。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号