• Title/Summary/Keyword: CRL

Search Result 150, Processing Time 0.026 seconds

Efficient Delta-CRL Issuing System (효율적인 Delta-CRL 발급 시스템)

  • Hyun, Sang-Woo;Kim, Rak-Hyun;Lee, Yong;Um, Hee-Jung;Yeom, Heung-Yeol
    • Proceedings of the Korea Institutes of Information Security and Cryptology Conference
    • /
    • 2001.11a
    • /
    • pp.355-365
    • /
    • 2001
  • 본 논문은 현재 국내에서 개발되고 있는 인증서 발급 시스템에서 인증서가 취소되었을 경우에 발급되는 인증서 취소목록(Certificate Revocation List : CRL)에 따른 문제점 중, 유통되는 트래픽 부하를 줄이고, 발급되는 CRL의 크기를 감소시키며, 또한 전체 CRL의 발급 시간을 연장시킬 수 있는 Delta-CRL 발급 시스템의 정책, 운영 방안 및 발급 방법을 제시한다. 제안된 운영 방안은 Full-CRL의 Distribution Point를 이용하여 Base-CRL을 가리키고 Base-CRL의 Delta-CRL distribution point를 이용하여 Delta-CRL의 위치를 확인한다. 그리고 세 가지 Delta-CRL 발급 시스템의 동작 방법들을 분석하였다.

  • PDF

Development on the Operating Technique for Delta CRL (델타 CRL 운영 기술 개발)

  • 김락현;엄희정;염흥열
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.12 no.4
    • /
    • pp.15-27
    • /
    • 2002
  • The purpose of this paper is to present both the specification of delta-CRL and the polices for delta CRL in order to solve the problem involved in issuing and maintaining the certificate revocation lists for the mobile communication network. If the user request to revoke the certificate issued by certification authority, the certification should be revoked and listed up in the certificate revocation list. In general, the certificate revocation list is issued regularly. Therefore PKI application should download the CRL and prove the validity of CRL. The traffic size of the exchanged traffic should be reduced for the mobile communication environment. The result if this paper can be used for the mobile communication various environments to reduce the size of CRL.

A VSSI-CRL Synthetic Control Chart (VSSI-CRL 합성관리도)

  • Lee Jae-Won;Lim Tae-Jin
    • Journal of the Korean Operations Research and Management Science Society
    • /
    • v.30 no.4
    • /
    • pp.1-14
    • /
    • 2005
  • We propose a VSSI-CRL(Variable Sampling Size and Samplina Interval-Conforming Run length) synthetic control chart in order to improve the statistical characteristics of both the VSSI chart and the CRL synthetic chart. The VSSI-CRL chart utilizes VSSI sampling scheme, but it produces a signal only when the CRI is less than a given limit. An algorithm for calculating the ARL(Average Run length) and ATS(Average Time to Signal) of the VSSI-CRL chart is developed by employing Markov chain method. We present some lemmas for describing the statistical characteristics of the VSSI-CRL chart under in-control state. A procedure for designing the VSSI-CRL chart is proposed based on the lemmas. Extensive comparative studios show that the VSSI-CRL chart is superior to the CRL synthetic chart or the VSSI chart in general, and is comparable to the EWMA chart in ATS performance.

Certificate Revocation Scheme based on the Blockchain for Vehicular Communications

  • Kim, Hyun-Gon
    • Journal of the Korea Society of Computer and Information
    • /
    • v.25 no.7
    • /
    • pp.93-101
    • /
    • 2020
  • Regional CRL(certificate revocation list) in vehicular communications is to partition Full CRL into several small CRLs according to geographic location to keep the size of individual CRLs with smaller. However, since a Regional CRL includes vehicle's revoked certificates within its administrative region, it has to know vehicle' location. For this, how to know vehicle' location effectively corresponding to every region represents a major challenge. This paper proposes a Regional CRL scheme which is envisioned to achieve vehicle's location and to make regional CRLs according to vehicles current location efficiently. The scheme is based on the short-lived pseudonyms defined by WAVE standard. It also acquires issued pseudonyms, vehicle's id and region information whenever a vehicle initiates pseudonyms refill after that, utilizes them to create and distribute the Regional CRL. To keep location privacy-preserving for vehicles, the scheme uses the blockchain technology in the network. The analysis results show that it reduces CRL size and database query time for finding revoked certificates sharply in the vehicle's on-board unit.

Structure and Biological Function of Plant CRL4, and Its Involvement in Plant Cellular Events (식물 CRL4 복합체의 구조, 기능 및 식물 세포 내 다양한 이벤트와의 연계성)

  • Lee, Jae-Hoon
    • Journal of Life Science
    • /
    • v.26 no.3
    • /
    • pp.364-375
    • /
    • 2016
  • Post-translational modification is an efficient process to rapidly transduce external stimulus into cellular response. Ubiquitination is a typical post-translational modification which is a highly conserved process in eukaryotes. UPS (Ubiquitin/Proteasome System) mediated by the ubiquitination is to target diverse cellular proteins for degradation. Among E3 ubiquitin ligases that function as the key determinant for substrate recognition, CRL (cullin–RING E3 ubiquitin ligase) is the largest family and forms the complex composed of cullin, RBX1, adaptor and substrate receptor. Although CRL1, also known as SCF complex, has been widely researched for its biological role, the functional studies of CRL4 have been relatively elusive. In Arabidopsis, there are 119 substrate receptors named DCAF (DDB1 CUL4 Associated Factor) proteins for CRL4 and a fraction of DCAF proteins have been identified for their potential functions so far. In this paper, current understanding on structure and biological roles of plant CRL4 complexes in a diverse of cellular events is reviewed, especially focusing on CRL4 substrate receptors. Moreover, the regulatory mechanism of CRL4’s activity is also introduced. These studies will be helpful to further understand the signal transduction pathways in which such CRL4 complexes are involved and give a clue to establish the action network of entire CRL4 complexes in plants.

A CRL Update Protocol for an OCSP Server of WAVE System (WAVE 시스템 OCSP 서버를 위한 CRL 업데이트 프로토콜)

  • Choi, Beom-Jin;Kim, Eun-Gi
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2014.11a
    • /
    • pp.403-404
    • /
    • 2014
  • WAVE(Wireless Access in Vehicular Environment)에서 V2V(Vehicle to Vehicle) 통신 시 OBU(On Board Unit)인 자동차 단말은 수신한 정보가 제대로 된 정보인지를 확인하는 과정에서 공인인증서가 필요하다. 동시에 자동차 단말은 이 공인인증서의 상태가 유효한 지를 확인해야 한다. 이것을 확인하는 방법은 자동차 단말이 도로변에 설치돼 있는 RSU(Road Side Unit)인 OCSP(Online Certificate Status Protocol) 서버에게 공인인증서의 상태 확인 요청을 하는 것이다. OCSP 서버는 자동차 단말의 요청에 응답하기 위해서 인증서 폐지 목록인 CRL(Certificate Revocation List)을 가지고 있어야 한다. 본 논문에서는 WAVE 시스템의 OCSP 서버가 공인인증서 상태 정보를 자동차 단말로 알려줄 수 있도록 하기 위해 CA(Certificate Authority)의 CRL 저장소로부터 CRL 을 업데이트 하는 프로토콜을 제안한다. OCSP 서버가 CRL 을 업데이트 할 때, OCSP 서버가 가지고 있는 CRL 과 CRL 저장소가 가지고 있는 CRL 의 값을 비교하여 두 값이 같은 경우에는 CRL 을 업데이트 하지 않도록 한다. OCSP 서버가 선택적으로 CRL 을 업데이트 함으로써 불필요한 부하를 줄일 수 있을 것으로 기대된다.

A Study on the Realtime Cert-Validation of Certification based on DARC (DARC 기반에서의 실시간 인증서 유효성 검증에 관한 연구)

  • Jang, Heung-Jong;Lee, Seong-Eun;Lee, Jeong-Hyeon
    • The KIPS Transactions:PartC
    • /
    • v.8C no.5
    • /
    • pp.517-524
    • /
    • 2001
  • There are cases that revoke the certification because of disclosure of private key, deprivation of qualification and the expiration of a term of validity based on PKI. So, a user have to confirm the public key whether valid or invalid in the certification. There are many method such as CRL, Delta-CRL, OCSP for the cert-validation of certification. But these method many problems which are overload traffic on network and the CRL server because of processing for cert-validation of certification. In this paper we proposed the realtime cert-validation of certification method which solved problems that are data integrity by different time between transmission and receiving for CRL, and overload traffic on network and the CRL server based on DARC.

  • PDF

A Study on Distributed OCSP for minimizing the load of OCSP Server based on PKI (PKI환경의 OCSP서버 부하 감소를 위한 OCSP 분산 기법)

  • Ko, Hoon;Jang, Eui-Jin;Shin, Yong-Tae
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.13 no.6
    • /
    • pp.97-106
    • /
    • 2003
  • The important factor in Public-Key Infrastructure is the authentication to correspondent. We receive the digital certificate for authentication between each other, and then we check the existence of validity on the certificate by Certification Revocation List(CRL). But, To use CRL is the scheme used in offline status. So, it is impossible to refer to the latest information and the CRL scheme which is used after downloading is variously unsuitable to getting bigger of the CRL size as time goes on. Therefore, we prefer OCSP(Online Certificate Status Protocol) used in online to CRL used in offline. Consequently, we propose the scheme which provides the request of fast verification in case of requesting the verification on the certificate by owning the same update information to Certificate Registry and distributed OCSP.

A CRL Distribution Scheme Minimizing the Time for CRL Processing of Vehicles on Vehicular Communications

  • Kim, Hyun-Gon
    • Journal of the Korea Society of Computer and Information
    • /
    • v.23 no.12
    • /
    • pp.73-80
    • /
    • 2018
  • Certification revocation list(CRL) is needed for excluding compromised, faulty, illegitimate vehicle nodes and preventing the use of compromised cryptographic materials in vehicular communications. It should be distributed to vehicles resource-efficiently and CRL computational load of vehicles should not impact on life-critical applications with delay sensitive nature such as the pre-crash sensing that affords under 50msec latency. However, in the existing scheme, when a vehicle receives CRL, the vehicle calculates linkage values from linkage seeds, which results in heavy computational load. This paper proposes, a new CRL distribution scheme is proposed, which minimizes the time for CRL processing of vehicles. In the proposed scheme, the linkage value calculation procedure is performed by road-side unit(RSU) instead of the vehicle, and then the extracted linkage values are relayed to the vehicle transparently. The simulation results show that the proposed scheme reduces the CRL computational load dramatically, which would minimize impact on life-critical applications' operations with low latency.

Expression Study on the Scaffold Gene of CRL4 Complex in Rice (Oryza sativa L.) (벼에 존재하는 CRL4 복합체 scaffold 유전자의 발현 양상에 대한 연구)

  • Bae, Yoowon;Kim, Hani;Kim, Sang-Hoon;Lee, Jae-Hoon
    • Journal of Life Science
    • /
    • v.28 no.10
    • /
    • pp.1132-1139
    • /
    • 2018
  • The stability of diverse cellular proteins in eukaryotes is regulated via ubiquitination. Moreover, E3 ligase plays a crucial role in determining substrate specificity and transfers ubiquitins into the substrates during the ubiquitination process. As a type of multi-subunit E3 ligase, cullin4 (CUL4)-based E3 ligase (CRL4) complex is involved in a variety of cellular processes, such as hormonal and stress responses in plants. In spite of several reports on the versatile roles of CRL4 in various signalings in Arabidopsis, CRL4's function in rice has been poorly known. To learn about CRL4-mediated cellular processes in rice in more detail, OsCUL4 that exhibits the highest homology with Arabidopsis CUL4 was isolated, and its expression patterns in various tissues and in response to plant hormones and abiotic stresses were monitored. Exogenous application of ABA or cytokinin increased the transcript levels of the OsCUL4 gene. Moreover, OsCUL4 was significantly upregulated in response to drought and salt stresses. These findings imply that OsCUL4 may be functionally related to ABA- and/or cytokinin-mediated cellular responses. OsCUL4 directly interacted with OsDDB1, an adaptor protein of CRL4, indicating that OsCUL4 can act as a scaffold protein of CRL4. An expression study on the OsCUL4 gene from this report could be used as a starting point to elucidate cellular responses in which a CRL4-mediated ubiquitination process is involved in rice.