Skip to main content
Back to USENIX
  • Conferences
  • Students
Sign in

USENIX Conference Policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

A Method for Fast Revocation of Public Key Certificates and Security Capabilities

We present a new approach to fast certificate revocation centered around the concept of an on-line semi-trusted mediator (SEM). The use of a SEM in conjunction with a simple threshold variant of the RSA cryptosystem (mediated RSA) offers a number of practical advantages over current revocation techniques. Our approach simplifies validation of digital signatures and enables certificate revocation within legacy systems. It also provides immediate revocation of all security capabilities. This paper discusses both the architecture and implementation of our approach as well as performance and compatibility with the existing infrastructure. Our results show that threshold cryptography is practical for certificate revocation.

Dan Boneh, Stanford University

Xuhua Ding, University of California, Irvine

Gene Tsudik, University of California, Irvine

Chi Ming Wong, Stanford University

BibTeX
@inproceedings {270903,
author = {Dan Boneh and Xuhua Ding and Gene Tsudik and Chi Ming Wong},
title = {A Method for Fast Revocation of Public Key Certificates and Security Capabilities},
booktitle = {10th USENIX Security Symposium (USENIX Security 01)},
year = {2001},
address = {Washington, D.C.},
url = {https://www.usenix.org/conference/10th-usenix-security-symposium/method-fast-revocation-public-key-certificates-and},
publisher = {USENIX Association},
month = aug
}
Download

Links

Paper: 
http://www.usenix.org/events/sec01/full_papers/boneh/boneh.pdf
Paper (HTML): 
http://www.usenix.org/events/sec01/full_papers/boneh/boneh_html/index.html
  • Log in or register to post comments

© USENIX
EIN 13-3055038

  • Privacy Policy
  • Contact Us