CRL checking question...again

From: Mattias Helmer (mattias.helmer@nexus.se)
Date: 10/30/02


From: "Mattias Helmer" <mattias.helmer@nexus.se>
Date: Wed, 30 Oct 2002 10:04:44 +0100


Hi,
how do I verify if a certificate is revoked or not from .NET-program?
The certificate does not have a valid CRL Distribution Point (CDP) so I
"manually" have to download the CRL from an LDAP-server.

Thanx in advance
/ Mattias



Relevant Pages

  • Re: Stand Alone CA Problem
    ... > the CRL from the CDP fast enough and times out. ... > download is usually many times faster. ... >> and imported it in my certificate store. ...
    (microsoft.public.win2000.security)
  • Standalone Root CA
    ... AIA to a location within our AD and one on a web server. ... certificate and published a new CRL. ... certutil -dspublish to import the AIA and CDP information into AD. Used ...
    (microsoft.public.windows.server.networking)
  • Re: Windows doesnt verify digital signature of CRL files
    ... Correct me if I am wrong but I understood that certificate validation was ... If the CDP location contains a valid CRL URL and that CA's ... CRL is not already in cache, then the CRL is retreived from that CDP URL ...
    (Bugtraq)
  • Re: Certificates trouble: CRL not available(?) and "revocation server offline" error
    ... This could be due to permissions on the CDP and AIA locations. ... What I recommend is that you take the certificate you are trying to add ... CRLs are published by CAs to the CDP locations ... Clients obtain EFS certificates from EntIssuing CA ...
    (microsoft.public.windows.server.security)
  • Re: PkiView.msc - where does it get its info?
    ... I mistyped the AIA & CDP extensions. ... PKIView is not seeing the updates on that same server. ... Do I need to somehow republish or reissue the certificate and/or CRL now ...
    (microsoft.public.security)