Browse > Article
http://dx.doi.org/10.13089/JKIISC.2003.13.6.55

A Secure Digital Signature Delegation Scheme using CAs  

최연희 (숭실대학교 정보과학대학 컴퓨터통신연구실)
박미옥 (숭실대학교 정보과학대학 컴퓨터통신연구실)
전문석 (숭실대학교 정보과학대학)
Abstract
To perform the certificate validation processing on the user-side application induces the very considerable overhead because of the complex and time-consuming characteristic of the validation processing. Especially, the verification for digital signature over a certificate can be the major reason of the overhead, since the verification accompanies with the cryptographic calculation over each certificate on the certificate path. In this paper, we propose a new certificate validation scheme can reduce the overhead caused by user-side certificate validation processing and improve the utilization of CAs. As the result, our proposed scheme can not only reduces the overhead for the validation processing by decreasing the cryptographic calculation but also improves the utilization of CAs by employing them to the validation processing.
Keywords
PKI; CA;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Extended Validation Models in PKI: Alternatives and Implications /
[ M.Branchaud;J.Linn ] / 1st Annual PKI Research Workshop-Proceedings
2 Analytical performance evaluation of nested certificates /
[ Alvert Levi;M.Ufuk Caglayan ] / Performance Evaluation
3 Delegated Path Validation and Delegated Path Discovery Protocol Requirements /
[ D.Pinkas;R.Housley ] / IETF RFC 3379
4 Simple Certificate Validation Protocol(SCVP) /
[ Ambarish Malpani;Paul Hoffman;Russ Housley;Trevor Freeman ] / IETF draft-ietf-pkix-scvp-06.txt
5 Internet X.509 Public Key Infrastructure Certificate and CRL Profile /
[ R.Housley;W.Polk;D.Solo ] / IETF RFC 2459
6 Security Policies for the Federal Public Key Infrastructure /
[ N.A.Nazario ] / 19th NISSC
7 /
[ 심희원 ] / DNS를 이용한 상호 연동 및 인증서 검증 방안
8 DPD/DPV기능을 갖는 OCSPv2표준 /
[ 염흥렬 ] / 표준화 동향 특집
9 세계 최초의 통합형 인증서 검증시스템(CVS Certificate Validation System) 개발 /
[] / ETRI ZONE/R&D News
10 X.509 Internet Public Key Infrastructure Online Certificate Status Protocol, version 2 /
[ M.Myers;A.Malpani;D.Pinkas ] / IETF draft-ietf-pkix-ocspv2-text-01.txt
11 Certificate Validation Protocol /
[ D.Pinkas ] / IETF draft-ietf-pkix-cvp-01.txt
12 An Efficient Dynamic and Trust Preserving Public Key Infrastructure /
[ Alvert Levi;M.Ufuk Caglayan ] / Proceedings of the 2000 IEEE Symposium on Security and Privacy (S&P 2000)