Method of validating certificate by certificate validation server using certificate policies and certificate policy mapping in public key infrastructure
First Claim
1. A method of validating a certificate by a certificate validation server using certificate policies and certificate policy mapping in a public key infrastructure, comprising the steps of:
- allowing a certificate validation server to receive, from a client, an object certificate to be validated, a certificate of a certification authority which the client trusts, and a certificate policy which will be applied to validation of the object certificate, and allowing the certificate validation server to receive a request for validation of the object certificate;
allowing the certificate validation server to create a certification path for the object certificate in response to the request of the validation;
allowing the certificate validation server to determine whether the validation of the object certificate is allowed or denied using a certificate policy table with respect to the created certification path and the certificate policy;
allowing the certificate validation server to validate the created certification path using a certificate policy mapping table if the validation of the object certificate is allowed; and
allowing the certificate validation server to transmit a success message to the client if a validation result of the certification path is a success, or allowing the certificate validation server to transmit a failure message to the client if the validation result of the certification path is a failure.
1 Assignment
0 Petitions
Accused Products
Abstract
The present invention provides a method of validating a certificate by a certificate validation server using certificate policy and certificate policy mapping in a public key infrastructure (PKI). If the certificate validation server receives, from a client, an object certificate to be validated, a certificate of a certification authority which the client trusts, and a certificate policy which will be applied to validation of the object certificate, and receives a request for validation of the object certificate, the certificate validation server creates a certification path for the object certificate in response to the request. The certificate validation server validates the created certification path using a certificate policy mapping table if the validation of the object certificate is allowed, and then transmits a result message to the client according to the result of the validation of the certification path.
72 Citations
4 Claims
-
1. A method of validating a certificate by a certificate validation server using certificate policies and certificate policy mapping in a public key infrastructure, comprising the steps of:
-
allowing a certificate validation server to receive, from a client, an object certificate to be validated, a certificate of a certification authority which the client trusts, and a certificate policy which will be applied to validation of the object certificate, and allowing the certificate validation server to receive a request for validation of the object certificate;
allowing the certificate validation server to create a certification path for the object certificate in response to the request of the validation;
allowing the certificate validation server to determine whether the validation of the object certificate is allowed or denied using a certificate policy table with respect to the created certification path and the certificate policy;
allowing the certificate validation server to validate the created certification path using a certificate policy mapping table if the validation of the object certificate is allowed; and
allowing the certificate validation server to transmit a success message to the client if a validation result of the certification path is a success, or allowing the certificate validation server to transmit a failure message to the client if the validation result of the certification path is a failure. - View Dependent Claims (2, 3, 4)
-
Specification