US Patent Application 17725309. DETERMINISTIC CERTIFICATE EXPIRATION IN DISSAGGREGATED ENVIRONMENTS simplified abstract

From WikiPatents
Jump to navigation Jump to search

DETERMINISTIC CERTIFICATE EXPIRATION IN DISSAGGREGATED ENVIRONMENTS

Organization Name

Dell Products L.P.


Inventor(s)

Bradley K. Goodman of Nashua NH (US)


Kirk Alan Hutchinson of Londonderry NH (US)


DETERMINISTIC CERTIFICATE EXPIRATION IN DISSAGGREGATED ENVIRONMENTS - A simplified explanation of the abstract

  • This abstract for appeared for US patent application number 17725309 Titled 'DETERMINISTIC CERTIFICATE EXPIRATION IN DISSAGGREGATED ENVIRONMENTS'

Simplified Explanation

This abstract describes methods and systems for managing certificates in a distributed system. In this system, data processing systems use certificates issued by a certificate issuer. These data processing systems may not always be connected to the certificate issuer. The certificate issuer has the ability to revoke any issued certificate at any time, but may not inform other entities about the revocation. To determine if a certificate is valid, the data processing systems apply a set of rules to the certificate. These rules take into account the intermittent connectivity to the certificate issuer, which may make it difficult to determine if a certificate has been revoked. However, these rules also aim to minimize the risk of treating a certificate as valid when it has actually been revoked but the revocation is not known.


Original Abstract Submitted

Methods and systems for certificate management in a distributed system are disclosed. The distributed system may include data processing systems that utilize certificates issued by a certificate issuer. The data processing systems may be intermittently connected to the certificate issuer. The certificate issuer may, at any point in time, revoke any issued certificate. The certificate issuer may not notify other entities of the revocation. To determine whether a certificate should be treated as being valid, the data processing systems may apply a set of rules to the certificate that compensate for intermittent connectivity to the certificate issuer that may prevent determining whether a certificate has been revoked, while limiting risk due to the potential for a certificate to have been revoked but the revocation not being known.