Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
Checking certificate status with PKITP z/OS Cryptographic Services PKI Services Guide and Reference SA23-2286-00 |
|||||||||||
PKITP checks the revocation status of a certificate by retrieving certificate revocation lists (CRLs) or, when specified in the certificate, by invoking an online validation service that uses the online certificate status protocol (OCSP). PKITP certificate revocation checking is performed when useCRLS is
set higher than 0. It follows the sequence of validation
stages shown in Table 1.
|
Copyright IBM Corporation 1990, 2014
|