Optimal CRL releasing strategy in public key infrastructure

  • Chengyu Ma
  • , Nan Hu
  • , Yingjiu Li

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Public key infrastructure has been proposed as a promising foundation for verifying the authenticity of communicating parties and transferring trust over the internet. One of the key issues in public key infrastructure is how to manage certificate revocations. Various technical solutions dealing with key revocation have been proposed. However, to the best of our best knowledge, no rigorous efforts have been made to understand the behavior of certificate revocation requests based on empirical data. Furthermore, there is no study on the managerial aspect of Certificate Revocation Release. In this study, based on the empirical data collected from Veri Sign, we prove that a revocation system will become stable after a period of time. We show that different certificate authorities should take different strategies for releasing different types of certificate revocations. We also provide the exact steps by which certificate authorities can follow to derive optimal releasing strategies.

Original languageEnglish
Title of host publicationAssociation for Information Systems - 12th Americas Conference On Information Systems, AMCIS 2006
Pages3312-3323
Number of pages12
StatePublished - 2006
Externally publishedYes
Event12th Americas Conference on Information Systems, AMCIS 2006 - Acapulco, Mexico
Duration: 4 Aug 20066 Aug 2006

Publication series

NameAssociation for Information Systems - 12th Americas Conference On Information Systems, AMCIS 2006
Volume6

Conference

Conference12th Americas Conference on Information Systems, AMCIS 2006
Country/TerritoryMexico
CityAcapulco
Period4/08/066/08/06

Keywords

  • Certificate revocation list
  • Public key certificate
  • Public key infrastructure

Fingerprint

Dive into the research topics of 'Optimal CRL releasing strategy in public key infrastructure'. Together they form a unique fingerprint.

Cite this