loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Seventh IEEE Symposium on Computers and Communications (ISCC'02)
Security Aspects in Standard Certificate Revocation Mechanisms: A Case Study for OCSP
Ramada Hotel, Taormina-Giardini Naxos, Italy
July 01-July 04
ISBN: 0-7695-1671-8
Diana Berbecaru, Politecnico di Torino
Antonio Lioy, Politecnico di Torino
Marius Marian, Politecnico di Torino
One of the highly sensitive problems that need careful consideration when employing public-key technology in IT systems is the validation of the digital certificates used. In particular, one of the steps that must be performed is checking the revocation status of the certificate. With real-time revocation checking, a PKI-enabled system that needs to validate a certificate executes an on-line transaction with a specialized server - designated by a certification authority to provide signed responses containing certificate status information. At the end of the transaction an indication of the current revocation status of the certificate is returned. This paper presents the implementation of a system providing on-line certificate status service to end entities and proposes a simple OCSP client API which can be easily integrated into PKI-aware applications with the aim of performing on-line revocation-checking. Finally, the implementation?s performance was measured and the acquired results are presented and analyzed.
Citation:
Diana Berbecaru, Antonio Lioy, Marius Marian, "Security Aspects in Standard Certificate Revocation Mechanisms: A Case Study for OCSP," iscc, pp.484, Seventh IEEE Symposium on Computers and Communications (ISCC'02), 2002
Usage of this product signifies your acceptance of the Terms of Use.