Lecture Notes in Computer Science, 1999, Volume 1729/1999, 770, DOI: 10.1007/3-540-47790-X_10

Performance Evaluation of Certificate Revocation Using k-Valued Hash Tree

Hiroaki Kikuchi, Kensuke Abe and Shohachiro Nakanishi

View Related Documents

Abstract

A CRL (Certificate Revocation List) defined in X.509 is currently used for certificate revocation. There are some issues of CRL including a high communication cost and a low latency for update. To solve the issues, there are many proposals including CRT (Certificate Revocation Tree), Authenticated Dictionary, and Delta List. In this paper, we study CRT using k-valued hash tree. To estimate the optimal value of k, we examine the overhead of computation and the communication cost. We also discuss when a CRT should be reduced by eliminating unnecessary entries that are already expired.

Fulltext Preview

Image of the first page of the fulltext document