Notification Services for the Server-Based Certificate Validation Protocol

HTML  Download Download as PDF (Size: 100KB)  PP. 378-384  
DOI: 10.4236/ijcns.2009.25042    5,869 Downloads   10,579 Views  

ABSTRACT

The Server-Based Certificate Validation Protocol allows PKI clients to delegate to a server the construction or validation of certification paths. The protocol’s specification focuses on the communication between the server and the client and its security. It does not discuss how the servers can efficiently locate the necessary PKI resources like certificate or certificate revocation lists. In this paper we concentrate on this topic. We present a simple and effective method to facilitate locating and using various PKI resources by the servers, without modifying the protocol. We use the extension mechanism of the protocol for notifying the servers about PKI repositories, certificates, and revocations. We specify the tasks of the servers and certificate issu-ers and define the messages that are exchanged between them. A proof of concept is given by implementing an SCVP server, a client, and the proposed method in Java.

Share and Cite:

J. BUCHMANN and V. KARATSIOLIS, "Notification Services for the Server-Based Certificate Validation Protocol," International Journal of Communications, Network and System Sciences, Vol. 2 No. 5, 2009, pp. 378-384. doi: 10.4236/ijcns.2009.25042.

Copyright © 2024 by authors and Scientific Research Publishing Inc.

Creative Commons License

This work and the related PDF file are licensed under a Creative Commons Attribution 4.0 International License.