IP Library Granted Patent US 11,018,878
Granted Patent B2
US 11,018,878 · App. 16/720,258 · Granted May 25, 2021

Digital certificate management method, apparatus, and system

Inventor: Honglin Qiu (Hangzhou, CN)
Assignee: Advanced New Technologies Co., Ltd.
H04L9/3268G06F9/542H04L9/006H04L9/0637H04L9/3239H04L63/12H04L67/104H04L2209/38H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,018,878
App. No.
16/720,258
Granted
May 25, 2021
Kind
B2
Abstract

Techniques for providing a digital certificate management for blockchain technologies are described. One example method includes a transaction request including a digital certificate is received from a certificate authority at a node in a blockchain network, and the transaction request is a request to write the digital certificate into a blockchain associated with the blockchain network, and the digital certificate is issued to a node in the blockchain network. A consensus verification result is determined for the transaction request, and the consensus verification result is produced by nodes in the blockchain network. The consensus verification result is compared to a predetermined threshold value. In response to determining the consensus verification result is greater than or equal to the predetermined threshold value, the digital certificate is stored in the blockchain associated with the blockchain network.

Claims (65)

1. A computer-implemented method, comprising:

receiving a transaction request including a digital certificate at a node in a blockchain network, wherein the transaction request is a request to write the digital certificate into a blockchain associated with the blockchain network, and wherein the digital certificate is issued to the node in the blockchain network;

determining a consensus verification result for the transaction request, wherein the consensus verification result is produced by nodes in the blockchain network; and

storing, based on the consensus verification result, the digital certificate in the blockchain associated with the blockchain network.

2. The computer-implemented method of claim 1 , wherein the transaction request comprises asset transfer information and the digital certificate.

3. The computer-implemented method of claim 1 , wherein determining the consensus verification result further comprises:

determining a consensus verification by the nodes in the blockchain network sequentially; and

in response to the node determining the consensus verification, broadcasting, by the node, an announcement of completing the consensus verification to notify another node of the transaction request and a result of the consensus verification of the node.

4. The computer-implemented method of claim 3 , wherein the consensus verification further comprises:

extracting a certificate revocation list from a local ledger for the node;

comparing the digital certificate from the transaction request at the node with each revoked digital certificate recorded in the certificate revocation list;

in response to determining that the digital certificate does not match with each of the revoked digital certificates in the certificate revocation list, providing an indication that the consensus verification passed at the node; and

storing the digital certificate extracted from the transaction request in the local ledger for the node.

5. The computer-implemented method of claim 1 , further comprising:

determining a number of first nodes that indicate a success as a result from a consensus verification

determining a number of second nodes that indicate a failure as a result from the consensus verification; and

determining a consensus result based on the number of first nodes and the number of second nodes.

6. The computer-implemented method of claim 1 , wherein the transaction request is first transaction request, the consensus verification result is a first consensus verification result, and the method further comprises:

receiving a second transaction request including a certificate revocation list, wherein the second transaction request is a request to record the certificate revocation list in the blockchain;

determining a second consensus verification result for the second transaction request; and

writing, based on the second consensus verification result, the certificate revocation list into the blockchain.

7. The computer-implemented method of claim 1 , further comprising:

receiving a third transaction request, wherein the third transaction request is a request to write an edit to a certificate revocation list into the blockchain;

determining a third consensus verification result for the third transaction request; and

writing, based on the third consensus verification result, the edit of the certificate revocation list into the blockchain.

8. The computer-implemented method of claim 1 , wherein the digital certificate is deemed to be invalid until the storing of the digital certificate in the blockchain.

9. The computer-implemented method of claim 1 , wherein storing the digital certificate in the blockchain comprises:

chaining the digital certificate in the blockchain in response to the consensus verification result indicating that a consensus verification that generates the consensus verification result was successful; or

preventing a chaining of the digital certificate in the blockchain in response to the consensus verification result indicating that the consensus verification failed.

10. A non-transitory, computer-readable medium storing one or more instructions executable by a computer system to perform operations comprising:

receiving a transaction request including a digital certificate at a node in a blockchain network, wherein the transaction request is a request to write the digital certificate into a blockchain associated with the blockchain network, and wherein the digital certificate is issued to the node in the blockchain network;

determining a consensus verification result for the transaction request, wherein the consensus verification result is produced by nodes in the blockchain network; and

storing, based on the consensus verification result, the digital certificate in the blockchain associated with the blockchain network.

11. The non-transitory, computer-readable medium of claim 10 , wherein the transaction request comprises asset transfer information and the digital certificate.

12. The non-transitory, computer-readable medium of claim 10 , wherein determining the consensus verification result further comprises:

determining a consensus verification by the nodes in the blockchain network sequentially; and

in response to the node determining the consensus verification, broadcasting, by the node, an announcement of completing the consensus verification to notify another node of the transaction request and a result of the consensus verification of the node.

13. The non-transitory, computer-readable medium of claim 12 , wherein the consensus verification further comprises:

extracting a certificate revocation list from a local ledger for the node;

comparing the digital certificate from the transaction request at the node with each revoked digital certificate recorded in the certificate revocation list;

in response to determining that the digital certificate does not match with each of the revoked digital certificates in the certificate revocation list, providing an indication that the consensus verification passed at the node; and

storing the digital certificate extracted from the transaction request in the local ledger for the node.

14. The non-transitory, computer-readable medium of claim 10 , wherein the transaction request is first transaction request, the consensus verification result is a first consensus verification result, and the operations further comprises:

receiving a second transaction request including a certificate revocation list, wherein the second transaction request is a request to record the certificate revocation list in the blockchain;

determining a second consensus verification result for the second transaction request; and

writing, based on the second consensus verification result, the certificate revocation list into the blockchain.

15. The non-transitory, computer-readable medium of claim 10 , further comprising:

receiving a third transaction request, wherein the third transaction request is a request to write an edit to a certificate revocation list into the blockchain;

determining a third consensus verification result for the third transaction request; and

writing, based on the third consensus verification result, the edit of the certificate revocation list into the blockchain.

16. A computer-implemented system, comprising:

one or more computers; and

one or more computer memory devices interoperably coupled with the one or more computers and having tangible, non-transitory, machine-readable media storing one or more instructions that, when executed by the one or more computers, perform one or more operations comprising:

receiving a transaction request including a digital certificate at a node in a blockchain network, wherein the transaction request is a request to write the digital certificate into a blockchain associated with the blockchain network, and wherein the digital certificate is issued to the node in the blockchain network;

determining a consensus verification result for the transaction request, wherein the consensus verification result is produced by nodes in the blockchain network; and

storing, based on the consensus verification result, the digital certificate in the blockchain associated with the blockchain network.

17. The computer-implemented system of claim 16 , wherein the transaction request comprises asset transfer information and the digital certificate.

18. The computer-implemented system of claim 16 , wherein determining the consensus verification result further comprises:

determining a consensus verification by the nodes in the blockchain network sequentially; and

in response to the node determining the consensus verification, broadcasting, by the node, an announcement of completing the consensus verification to notify another node of the transaction request and a result of the consensus verification of the node.

19. The computer-implemented system of claim 18 , wherein the consensus verification further comprises:

extracting a certificate revocation list from a local ledger for the node;

comparing the digital certificate from the transaction request at the node with each revoked digital certificate recorded in the certificate revocation list;

in response to determining that the digital certificate does not match with each of the revoked digital certificates in the certificate revocation list, providing an indication that the consensus verification passed at the node; and

storing the digital certificate extracted from the transaction request in the local ledger for the node.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2020
From: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
To: ADVANCED NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053754/0625 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2020
From: ALIBABA GROUP HOLDING LIMITED
To: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053743/0464 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 24, 2020
From: QIU, HONGLIN
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 051614/0615 →