|
Title:
|
A modeling of certificate revocation and its application to synthesis of revocation traces
|
|
Author:
|
Hernández Gañán, Carlos; Mata Diaz, Jorge; Muñoz Tapia, José Luis; Hernández Serrano, Juan; Esparza Martín, Óscar; Alins Delgado, Juan José
|
|
Other authors:
|
Universitat Politècnica de Catalunya. Departament d'Enginyeria Telemàtica |
|
Abstract:
|
One of the hardest tasks of a public key infrastructure (PKI) is to manage revocation. Newcommunication paradigms push the revocation system to the limit and an accurate resource assessmentis necessary before implementing a particular revocation distribution system. In this context, a precisemodeling of certificate revocation is necessary. In this article, we analyze empirical data from realCAs to develop an accurate and rigorous model for certificate revocation. One of the key findings ofour analysis is that the certificate revocation process is statistically self-similar. The proposed modelis based on an autoregressive fractionally integrated moving average (ARFIMA) process. Then, usingthis model, we show how to build a synthetic revocation generator that can be used in simulationsfor resource assessment. Finally, we also show that our model produces synthetic revocation tracesthat are indistinguishable for practical purposes from those corresponding to actual revocations. |
|
Publication date:
|
2012-09-26 |
|
Subject(s):
|
Àrees temàtiques de la UPC::Enginyeria electrònica i telecomunicacions::Telemàtica i xarxes d'ordinadors::Serveis telemàtics i de comunicació multimèdia Computer security Seguretat informàtica |
|
Rights:
|
Restricted access - publisher's policy |
|
Document type:
|
Article |
|
Share:
|
|