D 2007

A Robust and Efficient Mechanism to Distribute Certificate Revocation Information Using the Grid Monitoring Architecture

KOUŘIL, Daniel, Luděk MATYSKA and Michal PROCHÁZKA

Basic information

Original name

A Robust and Efficient Mechanism to Distribute Certificate Revocation Information Using the Grid Monitoring Architecture

Edition

Niagara Falls, Canada, 21st International Conference on Advanced Information Networking and Applications Workshops (AINAW'07), p. 614-619, 6 pp. 2007

Publisher

IEEE Computer Society

Other information

Type of outcome

Stať ve sborníku

Confidentiality degree

není předmětem státního či obchodního tajemství

References:

Organization unit

Faculty of Informatics

ISBN

0-7695-2847-3

Tags

International impact, Reviewed
Změněno: 30/5/2007 12:04, RNDr. Daniel Kouřil, Ph.D.

Abstract

V originále

Checking revocation information is necessary to prevent from using digital certificates whose contents become in- valid. In current system either periodical retrieval of Cer- tificate Revocation Lists (CRLs) or the Online Certificate Status Protocol (OCSP) are the most common mechanisms to access revocation information issued by the certifica- tion authorities. As both these approaches pose problems we propose a new method based on a Push model, which is based on the Grid Monitoring Architecture. Using this approach we guarantee the revocation information is dis- tributed in a robust and timely manner. We also describe a pilot implementation of the service based on the proposed design.