-
公开(公告)号:US11924193B2
公开(公告)日:2024-03-05
申请号:US17559873
申请日:2021-12-22
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
IPC: H04L9/40 , H04L9/32 , H04L67/568
CPC classification number: H04L63/0823 , H04L9/3268 , H04L63/04 , H04L67/568
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
公开(公告)号:US10404681B2
公开(公告)日:2019-09-03
申请号:US15851590
申请日:2017-12-21
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
公开(公告)号:US09887982B2
公开(公告)日:2018-02-06
申请号:US14050245
申请日:2013-10-09
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
CPC classification number: H04L63/0823 , H04L9/3268 , H04L67/2842
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
4.
公开(公告)号:US10110592B2
公开(公告)日:2018-10-23
申请号:US14135277
申请日:2013-12-19
Applicant: DigiCert, Inc.
Inventor: Hari Veladanda , Ning Chai , Richard F. Andrews , Quentin Liu
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, serves requests for the OCSP responses using the cache keys. For new certificates, a private CDN is pre-populated with an OCSP response for a certificate concurrent with that certificate being issued. Doing so effectively uses the PCDN as an origin server for OCSP responses, reducing CA infrastructure needs.
-
公开(公告)号:US20180124042A1
公开(公告)日:2018-05-03
申请号:US15851590
申请日:2017-12-21
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
CPC classification number: H04L63/0823 , H04L9/3268 , H04L63/04 , H04L67/2842
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
公开(公告)号:US20220191189A1
公开(公告)日:2022-06-16
申请号:US17559873
申请日:2021-12-22
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
IPC: H04L9/40 , H04L9/32 , H04L67/568
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
公开(公告)号:US11251974B2
公开(公告)日:2022-02-15
申请号:US13750742
申请日:2013-01-25
Applicant: DigiCert, Inc.
Inventor: Quentin Liu , Marc Williams , Richard F. Andrews
Abstract: A method of provisioning a first digital certificate and a second digital certificate based on an existing digital certificate includes receiving information related to the existing digital certificate. The existing digital certificate includes a first name listed in a Subject field and a second name listed in a SubjectAltName extension. The method also includes receiving an indication from a user to split the existing digital certificate and extracting the first name from the Subject field and the second name from the SubjectAltName extension of the existing digital certificate. The method further includes extracting the public key from the existing digital certificate, provisioning the first digital certificate with the first name listed in a Subject field of the first digital certificate and the public key, and provisioning the second digital certificate with the second name listed in a Subject field of the second digital certificate and the public key.
-
公开(公告)号:US11212274B2
公开(公告)日:2021-12-28
申请号:US16555598
申请日:2019-08-29
Applicant: DigiCert, Inc.
Inventor: Richard F. Andrews , Quentin Liu
Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.
-
-
-
-
-
-
-