专利名称:Certificate evaluation for certificate
authority reputation advising
发明人:Anooshiravan Saboori,Muhammad Umar
Janjua,Nelly Porter,Philip Hallin,HaitaoLi,Xiaohong Su,Kelvin Yiu,Anthony Paul Penta
申请号:US14449716申请日:20140801公开号:US09553732B2公开日:20170124
专利附图:
摘要:In many information security scenarios, a certificate issued by a certificate
authority on behalf of a domain is presented to a client in order to verify the identity ofthe domain. However, due to a decentralized structure and incomplete coordinationamong certificate authorities, the presence and exploitation of security vulnerabilities toissue untrustworthy certificates may be difficult for an individual client to determine.Presented herein are techniques for advising clients of the trustworthiness of respectivecertificate authorities by evaluating the certificates issued by such certificate authoritiesfor suspicious indicators, such as hashcode collisions with other certificates and public keyre-use. A trust level may be identified of respective certificate authorities according tothe presence or absence of suspicious indicators in the certificates issued by thecertificate authority, and a certificate authority trust set may be distributed to adviseclients of the trustworthiness of certificates issued by the respective certificateauthorities.
申请人:Microsoft Corporation
地址:Redmond WA US
国籍:US
代理机构:Sandip Minhas
代理人:Timothy Churna,Judy Yee
更多信息请下载全文后查看
因篇幅问题不能全部显示,请点此查看更多更全内容