Generalized certificate revocation

作者: Carl A. Gunter , Trevor Jim

DOI: 10.1145/325694.325736

关键词:

摘要: We introduce a language for creating and manipulating certificates, that is, digitally signed data based on public key cryptography, system revoking certificates. Our approach provides uniform mechanism secure distribution of bindings, authorizations, revocation information. An external the description these other forms is compiled into an intermediate with well-defined denotational operational semantics. The internal used to carry out consistency checks security, optimizations efficiency. primary contribution technique treating dually sorts information using polarity discipline in language.

参考文章(25)
Paul C. Kocher, On Certificate Revocation and Validation financial cryptography. pp. 172- 177 ,(1998) , 10.1007/BFB0055481
Barbara Fox, Brian LaMacchia, Certificate Recocation: Mechanics and Meaning financial cryptography. pp. 158- 164 ,(1998) , 10.1007/BFB0055479
Patrick McDaniel, Aviel Rubin, A Response to ''Can We Eliminate Certificate Revocation Lists?'' financial cryptography. pp. 245- 258 ,(2000) , 10.1007/3-540-45472-1_17
William Aiello, Sachin Lodha, Rafail Ostrovsky, Fast Digital Identity Revocation (Extended Abstract) international cryptology conference. pp. 137- 152 ,(1998) , 10.1007/BFB0055725
Ronald L. Rivest, Butler Lampson, SDSI - A Simple Distributed Security Infrastructure ,(1996)
Michael Myers, Revocation: Options and Challenges financial cryptography. pp. 165- 171 ,(1998)
Carl A. Gunter, Trevor Jim, Policy-directed certificate retrieval Software - Practice and Experience. ,vol. 30, pp. 1609- 1640 ,(2000) , 10.1002/1097-024X(200012)30:15<1609::AID-SPE334>3.0.CO;2-5
C. Adams, M. Myers, A. Malpani, S. Galperin, R. Ankney, X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSP IETF RFC 2560. ,vol. 2560, pp. 1- 23 ,(1999)
Michael Burrows, Martin Abadi, Roger Needham, A logic of authentication ACM Transactions on Computer Systems. ,vol. 8, pp. 18- 36 ,(1990) , 10.1145/77648.77649
W. Yeong, S. Kille, T. Howes, Lightweight Directory Access Protocol RFC. ,vol. 1777, pp. 1- 22 ,(1995)