[Cryptography] A PKI without CRLs or OCSP

Francisco Corella fcorella at pomcor.com
Wed Oct 26 00:48:48 EDT 2016


While working on a blockchain-based solution for remote identity
proofing, we came to realize that a blockchain with on-chain storage
can be used to implement the same functionality as a traditional PKI,
with remarkable advantages.  In particular, the verifier can validate
a certificate chain on its local copy of the blochain without any
network access.  Details can be found in this blog post <https://pomcor.com/2016/10/25/implementing-a-pki-on-a-blockchain/> and in Section
3 of this paper <https://pomcor.com/techreports/BlockchainPKI.pdf>.  Comments welcome.

Francisco





-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20161025/ff829ed5/attachment.html>


More information about the cryptography mailing list