Patent · US Active

Splitting certificate status responses evenly across multiple distributed certificate status responders

US9300478B2 · kind B2 · utility

0Cited by
2References
18Claims
0Family size

Assignee

Inventors

Key dates

Filing dateFeb 21, 2014
Grant dateMar 29, 2016
Priority date
Expiry dateFeb 21, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0823
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Techniques are disclosed for evenly distributing certificate status validity messages across multiple response servers. A certificate authority (CA) may partition subsets of online certificate status protocol (OCSP) responses to each be handled by OCSP response servers. The partitions are based on serial numbers of the underlying digital certificates of the OCSP responses. For example, to determine which OCSP response server is assigned to distribute a particular OCSP response, a modulo operation may be performed between the last octet value of the underlying certificate serial number and the total number of available OCSP response servers of the CA. The result yields a partition number that may be used to identify the corresponding OCSP response server.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.