Method for quickly searching mass digital certificate backlist

A technology of digital certificates and blacklists, which is applied in the direction of electrical digital data processing, special data processing applications, instruments, etc., and can solve problems such as unacceptable and high performance overhead

Active Publication Date: 2012-07-11
KOAL SOFTWARE CO LTD
View PDF3 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

When the number of blacklist entries reaches the order of millions, the traversal query brings a very large performance overhead, which becomes unacceptable in the actual application environment

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for quickly searching mass digital certificate backlist
  • Method for quickly searching mass digital certificate backlist
  • Method for quickly searching mass digital certificate backlist

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0017] In order to make the technical means, creative features, goals and effects achieved by the present invention easy to understand, the present invention will be further described below in conjunction with specific illustrations.

[0018] Such as figure 1 As shown, the method for quickly retrieving a large amount of digital certificate blacklists of the present invention comprises the following steps:

[0019] 1) Establish a first-level index, create a first-level index table according to the logo of the CA, and store the pointers to the second-level indexes of the blacklist entries of each CA;

[0020] 2) Establish the secondary index of each CA, and form an ordered list of the blacklist entries of each CA according to the certificate serial number;

[0021] 3) Eliminate duplicates in the secondary index;

[0022] 4) When searching, query the first-level index according to the issuer DN item in the user certificate, and obtain the entry pointer corresponding to the seco...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention aims to disclose a method for quickly searching a mass digital certificate backlist, which is based on a search method of preprocessing, multilevel classification and a dichotomy, wherein the complexity of the backlist research time is improved from O(N) to O(LogN), so the research performance is greatly improved, in the practical test, the method is used to research backlist items which have a scope of 1 million, the average time is controlled within about 1microsecond, so the purpose of the invention is realized.

Description

technical field [0001] The invention relates to a retrieval method for a digital certificate blacklist, in particular to a method for preprocessing and fast retrieval of a massive digital certificate blacklist. Background technique [0002] The CA system in the PKI system uses a blacklist to describe expired or revoked digital certificates. As the number of certificates issued by CAs increases, the number of entries in the blacklist will also increase. Large domestic CAs such as CFCA blacklist The number of list entries is close to a million. [0003] Because the main identifier of the blacklist entry is the certificate serial number of the user certificate and its revocation reason, and the certificate serial numbers of different CAs may be duplicated, and due to the existence of freezing and unfreezing operations, the same certificate serial number will also appear in the In the same blacklist, so the traditional blacklist retrieval technology is based on traversal query....

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F17/30
Inventor 掌晓愚韩洪慧张义民
Owner KOAL SOFTWARE CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products