(Enter summary)
Abstract: . We briefly consider certificate revocation lists (CRLs), and
ask whether they could, and should, be eliminated, in favor of other
mechanisms. In most cases, the answer seems to be "yes." We suggest
some possible replacement mechanisms.
1 Introduction
The notion of a "digital certificate" was introduced by Kohnfelder in his 1978
MIT bachelor's thesis[2]. The idea, now common, was that a certificate is a
digitally signed statement binding the key-holder's name to a public key. The
signer (or... (Update)
Context of citations to this paper: More
.... the CRL, because its handling has its drawbacks and there are other methods to verify the validity of a presented certificate (Rivest, 1998). The certification of identity is only the simplest form of a certificate. With version 3 the digital certificates following the...
...properties of certificates and CRTs. However, their system is best suited for a single CA issuing large numbers of certificates. Rivest [7] proposed an agent based approach that employs on line suicide bureaus to issue certificates of health for certificates. A recent...
Cited by: More
Nonmonotonicity, User Interfaces, and Risk Assessment in.. - Li, Feigenbaum (2001)
(Correct)
A Survey of Trust in Internet Applications - Grandison, al. (2000)
(Correct)
Reducing Certificate Revocation Cost using NPKI - Levi, Koç
(Correct)
Active bibliography (related documents): More All
0.1: Efficient and Fresh Certification - Gassko, Gemmell, MacKenzie (2000)
(Correct)
0.1: Unknown -
(Correct)
0.1: Unknown - Status Of This
(Correct)
Similar documents based on text: More All
0.3: On SDSI's Linked Local Name Spaces - Abadi (1998)
(Correct)
0.3: A Response to "Can We Eliminate Certificate Revocation Lists?" - McDaniel, Rubin (2000)
(Correct)
0.2: A Java Implementation of Simple Distributed Security Infrastructure - Morcos (1998)
(Correct)
Related documents from co-citation: More All
5: On certificate revocation and validation (context) - Kocher
5: Certificate revocation and certificate update
- Naor, Nissim - 1998
4: Certificate revocation: Mechanics and meaning
- Fox, LaMacchia
BibTeX entry: (Update)
Ronald L. Rivest, "Can we eliminate certificate revocation lists?," in Financial Cryptography, Rafael Hirschfeld, Ed., Anguilla, British West Indies, February 1998, vol. 1465, pp. 178--183, Springer. http://citeseer.ist.psu.edu/rivest98can.html More
@inproceedings{ rivest98can,
author = "Ronald L. Rivest",
title = "Can We Eliminate Certificate Revocations Lists?",
booktitle = "Financial Cryptography",
pages = "178-183",
year = "1998",
url = "citeseer.ist.psu.edu/rivest98can.html" }
Citations (may not include all citations):
1065
Handbook of Applied Cryptography (context) - Menezes, van Oorschot et al. - 1997
156
SDSI--a simple distributed security infrastructure
- Rivest, Lampson
77
Certificate revocation and certificate update
- Naor, Nissim - 1998
26
Recent-secure authentication: Enforcing revocation in distri..
- Stubblebine - 1995
22
SPKI certificate documentation (context) - Ellison - 1998
22
Towards a practical public-key cryptosystem (context) - Kohnfelder - 1978
18
Efficient certificate revocation
- Micali - 1996
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://theory.lcs.mit.edu/~cis/cis-publications.html): More
"Pseudo-Random" Number Generation within.. - Bellare, Goldwasser, .. (1997)
(Correct)
The Shortest Vector in a Lattice is Hard to Approximate to.. - Micciancio (1998)
(Correct)
A Method for Obtaining Digital Signatures and Public-Key.. - Rivest, Shamir, Adleman (1978)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC