Method for efficiently revoking digital identities
申请(专利)号:
09/197392
申请日期:
11/20/1998
公开/公告号:
US6397329
公开/公告日期:
05/28/2002
被引量:
摘要:
These selected nodes are updated. A token is valid on day i+1 if it has been updated on day i. If on day i+1, a first party A wishes to verify a second party B's public key certificate, party A queries the CA. The CA sends to A one of the valid tokens. A's cryptography device receives the token and performs a one-way function, such as a hash function, on this received token a certain number of times to obtain the Dth value. This value is compared to the value on B's certificate. In a second version of the invention, the data revocation structure is constructed using a more general formulation. Each user's certificate includes a collection of all subsets containing that user. For each of these subsets, there is a chain. The certificate includes the zero token for each chain of each set on the certificate. Similar updating and verification processes are performed using this data revocation structure. In a third embodiment, the updating process is performed incrementally.
展开
通过文献互助平台发起求助,成功后即可免费获取论文全文。
相似文献
参考文献
引证文献
研究点推荐
引用走势
辅助模式
引用
文献可以批量引用啦~
欢迎点我试用!