发明名称 IDENTITY-BASED CERTIFICATE MANAGEMENT
摘要 Methods for managing digital certificates, including issuance, validation, and revocation are disclosed. Various embodiments involve querying a directory service with entries that correspond to a particular client identity and have attributes including certificate issuance limits and certificate validity time values. The validity time values are adjustable to revoke selectively the certificates based upon time intervals set forth in validity identifiers included therein.
申请公布号 US2017019260(A1) 申请公布日期 2017.01.19
申请号 US201615279191 申请日期 2016.09.28
申请人 SecureAuth Corporation 发明人 Grajek Garret Florian;Lo Jeffrey Chiwai;Lambiase Mark V.
分类号 H04L9/32;H04L9/30;H04L29/06;H04L9/14 主分类号 H04L9/32
代理机构 代理人
主权项 1. A method performed by a computer system for validating a digital certificate issued to a client system and associated with a specific client identity, the method comprising: receiving the digital certificate from the client system, the digital certificate including a user identifier and a certificate validity period identifier, the user identifier corresponding to the specific client identity; generating a first query to a directory service which includes a request for a first entry associated with the specific client identity, the first entry including a directory validity time value for the specific client identity; receiving the directory validity time value for the specific client identity returned by the directory service in response to the first query; and validating the digital certificate, wherein validating the digital certificate comprises determining that a certificate validity period specified by the certificate validity period identifier is later than the received directory validity time value.
地址 Irvine CA US