Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices
Public Key Infrastructure (PKI) is a key infrastructure for secure communications and transactions on the Internet. We revisit the problem of timely certificate revocation and develop a performance analysis framework with more realistic assumptions of when certificates are revoked, a query model dif...
Gespeichert in:
Hauptverfasser: | , |
---|---|
Format: | Tagungsbericht |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | 40 |
---|---|
container_issue | |
container_start_page | 31 |
container_title | |
container_volume | |
creator | Sufatrio, S. Yap, R. H. C. |
description | Public Key Infrastructure (PKI) is a key infrastructure for secure communications and transactions on the Internet. We revisit the problem of timely certificate revocation and develop a performance analysis framework with more realistic assumptions of when certificates are revoked, a query model differentiating revoked and unrevoked certificates, and realistic cost factors. Our analysis is fine-grained and shows the impact of a revocation scheme on the computation, storage and bandwidth costs particularly on mobile devices as the verifiers. We apply our performance framework to analyze the following schemes: CRL, OCSP, CRS and CREV. Our analysis shows clearly the strengths and weaknesses of each scheme particularly for mobile lightweight verifiers under higher timeliness guarantees. |
doi_str_mv | 10.1109/Metrisec.2011.17 |
format | Conference Proceeding |
fullrecord | <record><control><sourceid>ieee_6IE</sourceid><recordid>TN_cdi_ieee_primary_6165761</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><ieee_id>6165761</ieee_id><sourcerecordid>6165761</sourcerecordid><originalsourceid>FETCH-LOGICAL-i90t-acd397a9472f0b51950a3333957d4b22cff94f8528b9c23cfc3a0217bd54857b3</originalsourceid><addsrcrecordid>eNotTF1LAzEQjKhgqX0XfMkfuJrN114epdYqtIjSNx9Kkm7aQNuTu1jpv_f8WIbZnWFmGbsBMQYQ7m5Bpc0dxbEUAGPAMzZyWAu0zmhbC3X-q0FbVCC1MRdsIJW0FSLIKzbquhyEtGjr3hyw99dPfyg5nfJhw8uW-DQliqXjTeKLpiW-zHvanfiE2j6Voy_E3-jY9EduDrzHPG-25Yt-uG-EvCP-QMccqbtml8nvOhr97yFbPk6Xk6dq_jJ7ntzPq-xEqXxcK4feaZRJBAPOCK_6cQbXOkgZU3I61UbWwUWpYorKCwkY1kbXBoMastu_t5mIVh9t3vv2tLJgDVpQ34CrV2U</addsrcrecordid><sourcetype>Publisher</sourcetype><iscdi>true</iscdi><recordtype>conference_proceeding</recordtype></control><display><type>conference_proceeding</type><title>Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices</title><source>IEEE Electronic Library (IEL) Conference Proceedings</source><creator>Sufatrio, S. ; Yap, R. H. C.</creator><creatorcontrib>Sufatrio, S. ; Yap, R. H. C.</creatorcontrib><description>Public Key Infrastructure (PKI) is a key infrastructure for secure communications and transactions on the Internet. We revisit the problem of timely certificate revocation and develop a performance analysis framework with more realistic assumptions of when certificates are revoked, a query model differentiating revoked and unrevoked certificates, and realistic cost factors. Our analysis is fine-grained and shows the impact of a revocation scheme on the computation, storage and bandwidth costs particularly on mobile devices as the verifiers. We apply our performance framework to analyze the following schemes: CRL, OCSP, CRS and CREV. Our analysis shows clearly the strengths and weaknesses of each scheme particularly for mobile lightweight verifiers under higher timeliness guarantees.</description><identifier>ISSN: 2326-7712</identifier><identifier>ISBN: 9781467312455</identifier><identifier>ISBN: 1467312452</identifier><identifier>EISBN: 9780769546803</identifier><identifier>EISBN: 0769546803</identifier><identifier>DOI: 10.1109/Metrisec.2011.17</identifier><language>eng</language><publisher>IEEE</publisher><subject>Analytical models ; Bandwidth ; Digital signatures ; Internet ; Mobile communication ; Mobile handsets ; Steady-state</subject><ispartof>2011 Third International Workshop on Security Measurements and Metrics, 2011, p.31-40</ispartof><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://ieeexplore.ieee.org/document/6165761$$EHTML$$P50$$Gieee$$H</linktohtml><link.rule.ids>309,310,776,780,785,786,2052,27902,54895</link.rule.ids><linktorsrc>$$Uhttps://ieeexplore.ieee.org/document/6165761$$EView_record_in_IEEE$$FView_record_in_$$GIEEE</linktorsrc></links><search><creatorcontrib>Sufatrio, S.</creatorcontrib><creatorcontrib>Yap, R. H. C.</creatorcontrib><title>Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices</title><title>2011 Third International Workshop on Security Measurements and Metrics</title><addtitle>metrisec</addtitle><description>Public Key Infrastructure (PKI) is a key infrastructure for secure communications and transactions on the Internet. We revisit the problem of timely certificate revocation and develop a performance analysis framework with more realistic assumptions of when certificates are revoked, a query model differentiating revoked and unrevoked certificates, and realistic cost factors. Our analysis is fine-grained and shows the impact of a revocation scheme on the computation, storage and bandwidth costs particularly on mobile devices as the verifiers. We apply our performance framework to analyze the following schemes: CRL, OCSP, CRS and CREV. Our analysis shows clearly the strengths and weaknesses of each scheme particularly for mobile lightweight verifiers under higher timeliness guarantees.</description><subject>Analytical models</subject><subject>Bandwidth</subject><subject>Digital signatures</subject><subject>Internet</subject><subject>Mobile communication</subject><subject>Mobile handsets</subject><subject>Steady-state</subject><issn>2326-7712</issn><isbn>9781467312455</isbn><isbn>1467312452</isbn><isbn>9780769546803</isbn><isbn>0769546803</isbn><fulltext>true</fulltext><rsrctype>conference_proceeding</rsrctype><creationdate>2011</creationdate><recordtype>conference_proceeding</recordtype><sourceid>6IE</sourceid><sourceid>RIE</sourceid><recordid>eNotTF1LAzEQjKhgqX0XfMkfuJrN114epdYqtIjSNx9Kkm7aQNuTu1jpv_f8WIbZnWFmGbsBMQYQ7m5Bpc0dxbEUAGPAMzZyWAu0zmhbC3X-q0FbVCC1MRdsIJW0FSLIKzbquhyEtGjr3hyw99dPfyg5nfJhw8uW-DQliqXjTeKLpiW-zHvanfiE2j6Voy_E3-jY9EduDrzHPG-25Yt-uG-EvCP-QMccqbtml8nvOhr97yFbPk6Xk6dq_jJ7ntzPq-xEqXxcK4feaZRJBAPOCK_6cQbXOkgZU3I61UbWwUWpYorKCwkY1kbXBoMastu_t5mIVh9t3vv2tLJgDVpQ34CrV2U</recordid><startdate>201109</startdate><enddate>201109</enddate><creator>Sufatrio, S.</creator><creator>Yap, R. H. C.</creator><general>IEEE</general><scope>6IE</scope><scope>6IL</scope><scope>CBEJK</scope><scope>RIE</scope><scope>RIL</scope></search><sort><creationdate>201109</creationdate><title>Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices</title><author>Sufatrio, S. ; Yap, R. H. C.</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-i90t-acd397a9472f0b51950a3333957d4b22cff94f8528b9c23cfc3a0217bd54857b3</frbrgroupid><rsrctype>conference_proceedings</rsrctype><prefilter>conference_proceedings</prefilter><language>eng</language><creationdate>2011</creationdate><topic>Analytical models</topic><topic>Bandwidth</topic><topic>Digital signatures</topic><topic>Internet</topic><topic>Mobile communication</topic><topic>Mobile handsets</topic><topic>Steady-state</topic><toplevel>online_resources</toplevel><creatorcontrib>Sufatrio, S.</creatorcontrib><creatorcontrib>Yap, R. H. C.</creatorcontrib><collection>IEEE Electronic Library (IEL) Conference Proceedings</collection><collection>IEEE Proceedings Order Plan All Online (POP All Online) 1998-present by volume</collection><collection>IEEE Xplore All Conference Proceedings</collection><collection>IEEE Electronic Library (IEL)</collection><collection>IEEE Proceedings Order Plans (POP All) 1998-Present</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>Sufatrio, S.</au><au>Yap, R. H. C.</au><format>book</format><genre>proceeding</genre><ristype>CONF</ristype><atitle>Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices</atitle><btitle>2011 Third International Workshop on Security Measurements and Metrics</btitle><stitle>metrisec</stitle><date>2011-09</date><risdate>2011</risdate><spage>31</spage><epage>40</epage><pages>31-40</pages><issn>2326-7712</issn><isbn>9781467312455</isbn><isbn>1467312452</isbn><eisbn>9780769546803</eisbn><eisbn>0769546803</eisbn><abstract>Public Key Infrastructure (PKI) is a key infrastructure for secure communications and transactions on the Internet. We revisit the problem of timely certificate revocation and develop a performance analysis framework with more realistic assumptions of when certificates are revoked, a query model differentiating revoked and unrevoked certificates, and realistic cost factors. Our analysis is fine-grained and shows the impact of a revocation scheme on the computation, storage and bandwidth costs particularly on mobile devices as the verifiers. We apply our performance framework to analyze the following schemes: CRL, OCSP, CRS and CREV. Our analysis shows clearly the strengths and weaknesses of each scheme particularly for mobile lightweight verifiers under higher timeliness guarantees.</abstract><pub>IEEE</pub><doi>10.1109/Metrisec.2011.17</doi><tpages>10</tpages></addata></record> |
fulltext | fulltext_linktorsrc |
identifier | ISSN: 2326-7712 |
ispartof | 2011 Third International Workshop on Security Measurements and Metrics, 2011, p.31-40 |
issn | 2326-7712 |
language | eng |
recordid | cdi_ieee_primary_6165761 |
source | IEEE Electronic Library (IEL) Conference Proceedings |
subjects | Analytical models Bandwidth Digital signatures Internet Mobile communication Mobile handsets Steady-state |
title | Quantifying the Effects of More Timely Certificate Revocation on Lightweight Mobile Devices |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-02-09T12%3A33%3A13IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-ieee_6IE&rft_val_fmt=info:ofi/fmt:kev:mtx:book&rft.genre=proceeding&rft.atitle=Quantifying%20the%20Effects%20of%20More%20Timely%20Certificate%20Revocation%20on%20Lightweight%20Mobile%20Devices&rft.btitle=2011%20Third%20International%20Workshop%20on%20Security%20Measurements%20and%20Metrics&rft.au=Sufatrio,%20S.&rft.date=2011-09&rft.spage=31&rft.epage=40&rft.pages=31-40&rft.issn=2326-7712&rft.isbn=9781467312455&rft.isbn_list=1467312452&rft_id=info:doi/10.1109/Metrisec.2011.17&rft_dat=%3Cieee_6IE%3E6165761%3C/ieee_6IE%3E%3Curl%3E%3C/url%3E&rft.eisbn=9780769546803&rft.eisbn_list=0769546803&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rft_ieee_id=6165761&rfr_iscdi=true |