Patent · US Active

Reducing latency for certificate validity messages using private content delivery networks

US10110592B2 · kind B2 · utility

1Cited by
0References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 19, 2013
Grant dateOct 23, 2018
Priority date
Expiry dateJul 4, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L67/568
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, serves requests for the OCSP responses using the cache keys. For new certificates, a private CDN is pre-populated with an OCSP response for a certificate concurrent with that certificate being issued. Doing so effectively uses the PCDN as an origin server for OCSP responses, reducing CA infrastructure needs.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.