Volume 7 Number 6 (Jun. 2012)
Home > Archive > 2012 > Volume 7 Number 6 (Jun. 2012) >
JCP 2012 Vol.7(6): 1437-1444 ISSN: 1796-203X
doi: 10.4304/jcp.7.6.1437-1444

An Efficient Certificate Revocation and Verification Scheme from Multi-Hashing

Mengbo Hou, Qiuliang Xu, Fengbo Lin
School of Computer Science and Technology, Shandong University Key Laboratory of Software Engineering, Shandong Province Ji’nan, 250101, China
Abstract—Even though Public Key Infrastructure (PKI) and X.509 certificate has been a prominent security model for a variety of e-commerce applications and large scale distributed computing, it has not been sufficiently investigated in the certificate revocation and verification mechanism. In this paper, we discuss the need and importance of certificate revocation and verification, and analyze the limitations of several certificate validation schemes that are widely used in PKI environments. Then we propose an alternative scheme. The underlying idea is that the certificate holder provides certificate validation proof (CVP) to the verifiers in manner of initiative. According to this scheme, The CVP is a proof issued by a trusted third party (TTP) for the certificate stating whether it was revoked or not. For both parties in any transaction, the certificate holder provides the CVP to the verifier, the verifier knows about the validity status of the certificate by verifying CVP efficiently without any extra information except the certificate. The CVP is created by multioperations with a HASH function and operations are associated with the current time. The suggested scheme is principally simple with characteristics of distributed processing, high security, low communication costs and good practicability.

Index Terms—Public Key Infrastructure, X.509 certificate, certificate validation, hash function.

[PDF]

Cite: Mengbo Hou, Qiuliang Xu, Fengbo Lin, "An Efficient Certificate Revocation and Verification Scheme from Multi-Hashing," Journal of Computers vol. 7, no. 6, pp. 1437-1444, 2012.

General Information

ISSN: 1796-203X
Abbreviated Title: J.Comput.
Frequency: Bimonthly
Editor-in-Chief: Prof. Liansheng Tan
Executive Editor: Ms. Nina Lee
Abstracting/ Indexing: DBLP, EBSCO,  ProQuest, INSPEC, ULRICH's Periodicals Directory, WorldCat,etc
E-mail: jcp@iap.org
  • Nov 14, 2019 News!

    Vol 14, No 11 has been published with online version   [Click]

  • Mar 20, 2020 News!

    Vol 15, No 2 has been published with online version   [Click]

  • Dec 16, 2019 News!

    Vol 14, No 12 has been published with online version   [Click]

  • Sep 16, 2019 News!

    Vol 14, No 9 has been published with online version   [Click]

  • Aug 16, 2019 News!

    Vol 14, No 8 has been published with online version   [Click]

  • Read more>>