Invention Grant
US08195933B2 Method and system for computing digital certificate trust paths using transitive closures
有权
使用传递闭包计算数字证书信任路径的方法和系统
- Patent Title: Method and system for computing digital certificate trust paths using transitive closures
- Patent Title (中): 使用传递闭包计算数字证书信任路径的方法和系统
-
Application No.: US10045112Application Date: 2002-01-10
-
Publication No.: US08195933B2Publication Date: 2012-06-05
- Inventor: Messaoud Benantar
- Applicant: Messaoud Benantar
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Hamilton & Terrile, LLP
- Agent Michael Rocco Cannatti
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/00 ; H04L9/08

Abstract:
A method, system, apparatus, and computer program product are presented for managing digital certificates. When entities need to engage in a secure transaction or open a secure communication link, they may exchange digital certificates in order to provide a public key or reference information to a public key for the opposing entity, thereby requiring validation of a received certificate. Rather than construct a trust path for each validation event, hierarchical certifications and peer-to-peer cross-certifications among a set of certificate authorities are represented by a set of trust relations, and trust path information is generated using a transitive closure computation and an “all pairs shortest paths” computation over the set of trust relations and then incrementally updated as the set of trust relations changes. Computations related to trust paths can be delegated to a central agent in a trust web.
Public/Granted literature
- US20030130947A1 Method and system for computing digital certificate trust paths using transitive closures Public/Granted day:2003-07-10
Information query