Certificate Revocation List SchemeBased on Partial Signature Hash Table

王政,赵明,斯雪明,韩文报
DOI: https://doi.org/10.3969/j.issn.1000-3428.2009.01.012
2009-01-01
Abstract:Large scale environment, unreasonable certificate revocation management will bring enormous operations and burden of network transmission. This paper analyzes some kinds of CRL mechanisms, puts forward a maintenance scheme of certificate revocation list named PSHT-CRL, which inherits the character of segment-CRL, redirect-CRL and over issue-CRL. PSHT-CRL uses Hash table, partial signature, and link method to ensure the scheme’s security, to reduce the cost of user request response and certificate updating. PSHT-CRL solves the problems of other revocation schemes. The security and capability of this scheme are analyzed and PSHT-CRL compared with other CRL scheme.
What problem does this paper attempt to address?