Invention Grant
US08131996B2 Distributed management of a certificate revocation list 有权
证书撤销列表的分布式管理

Distributed management of a certificate revocation list
Abstract:
In a method for managing a Certificate Revocation List (CRL), a first device (31, 61) receives the CRL (33, 67) which comprises at least one revoked certificate identifier (SNi). An integrity field (MACi) associated to an entry of the CRL (371, . . . , 37p) is calculated using a secret data (KCRL), wherein an entry comprises at least one revoked certificate identifier of the CRL. The entry and its associated calculated integrity field are transmitted to a second device (32, 62), distinct from the first device and are stored into the second device. The method further comprises checking a validity of a certificate.
Public/Granted literature
Information query
Patent Agency Ranking
0/0