Accelerating OCSP responses via content delivery network collaboration

    公开(公告)号:US10404681B2

    公开(公告)日:2019-09-03

    申请号:US15851590

    申请日:2017-12-21

    Applicant: DigiCert, Inc.

    Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.

    Reducing latency for certificate validity messages using private content delivery networks

    公开(公告)号:US10110592B2

    公开(公告)日:2018-10-23

    申请号:US14135277

    申请日:2013-12-19

    Applicant: DigiCert, Inc.

    Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, serves requests for the OCSP responses using the cache keys. For new certificates, a private CDN is pre-populated with an OCSP response for a certificate concurrent with that certificate being issued. Doing so effectively uses the PCDN as an origin server for OCSP responses, reducing CA infrastructure needs.

    ACCELERATING OCSP RESPONSES VIA CONTENT DELIVERY NETWORK COLLABORATION

    公开(公告)号:US20220191189A1

    公开(公告)日:2022-06-16

    申请号:US17559873

    申请日:2021-12-22

    Applicant: DigiCert, Inc.

    Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.

    Provisioning multiple digital certificates

    公开(公告)号:US11251974B2

    公开(公告)日:2022-02-15

    申请号:US13750742

    申请日:2013-01-25

    Applicant: DigiCert, Inc.

    Abstract: A method of provisioning a first digital certificate and a second digital certificate based on an existing digital certificate includes receiving information related to the existing digital certificate. The existing digital certificate includes a first name listed in a Subject field and a second name listed in a SubjectAltName extension. The method also includes receiving an indication from a user to split the existing digital certificate and extracting the first name from the Subject field and the second name from the SubjectAltName extension of the existing digital certificate. The method further includes extracting the public key from the existing digital certificate, provisioning the first digital certificate with the first name listed in a Subject field of the first digital certificate and the public key, and provisioning the second digital certificate with the second name listed in a Subject field of the second digital certificate and the public key.

    Accelerating OCSP responses via content delivery network collaboration

    公开(公告)号:US11212274B2

    公开(公告)日:2021-12-28

    申请号:US16555598

    申请日:2019-08-29

    Applicant: DigiCert, Inc.

    Abstract: Techniques are disclosed for accelerating online certificate status protocol (OCSP) response distribution to relying parties using a content delivery network (CDN). A certificate authority generates updated OCSP responses for OCSP responses cached in the CDN that are about to expire. In addition, the certificate authority pre-generates cache keys in place of CDNs generating the keys. The certificate authority sends the OCSP responses and the cache keys in one transaction, and the CDN, in turn, consumes the new OCSP responses using the cache keys.

Patent Agency Ranking