Caching alternatives for a MANET-oriented OCSP scheme
Autor: | Panagiotis Georgiadis, Giannis F. Marias, Konstantinos Papapanagiotou |
---|---|
Rok vydání: | 2006 |
Předmět: |
Revocation list
Public key certificate Vehicular ad hoc network Revocation computer.internet_protocol business.industry Computer science Mobile ad hoc network Certificate Computer security computer.software_genre Public-key cryptography Online Certificate Status Protocol business computer Computer network |
Zdroj: | Workshop of the 1st International Conference on Security and Privacy for Emerging Areas in Communication Networks, 2005.. |
DOI: | 10.1109/seccmw.2005.1588315 |
Popis: | Even though mobile ad hoc networks (MANETs) have been receiving increasing attention for more than a decade, many issues still remain unsolved, including the implementation and design of adequate security and trust mechanisms. The infrastructure-less nature of MANETs renders trust establishment a rather complex issue. Many solutions using public key cryptography and digital certificates have been proposed in this direction. However, the problem of certificate revocation and certificate status information distribution in MANETs has not yet been fully addressed. ADOPT (Ad-hoc Distributed OCSP for Trust) proposes the deployment of a lightweight, distributed, on-demand scheme based on cached OCSP responses, which can efficiently provide up-to-date certificate status information. As accurate and current revocation information is critical for any application based on public key certificates, ADOPT's caching mechanism should ensure that cached responses are updated regularly. This paper discusses caching issues and time parameters concerning ADOPT and proposes various alternatives that fit into different scenarios. |
Databáze: | OpenAIRE |
Externí odkaz: |