Basic Configuration Requirements
31
no
vd
ocx
(e
n)
6 Ap
ril 20
07
3c
Click
OK
.
Figure 5-4
Search Containers Page
5.3 Configuring Certificate Revocation Checking
Trusted root containers are automatically added to the OCSP and CRL certificate revocation
checking lists. Modify the lists as necessary and enable the proper revocation checking option.
In
Figure 5-5 on page 32
, both OCSP and CRL revocation checking are enabled. OCSP revocation
checking is performed for certificates chaining to the "abc_TrustedRoots" container. CRL checking
is performed for certificates chaining to the "xyz_TrustedRoots" container.
When using OCSP validation, the OCSP response is signed by the responder's certificate. In order
for the response to be considered valid, the responder's certificate must be trusted. Place the OCSP
responder's trusted root certificate in the trusted root container to identify it as trusted.
Summary of Contents for Enhanced Smart Card Method 3.0.1
Page 4: ...novdocx en 6 April 2007...
Page 8: ...8 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 10: ...10 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 20: ...20 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 24: ...24 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 28: ...28 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 40: ...40 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...
Page 44: ...44 Novell Enhanced Smart Card Method Installation Guide novdocx en 6 April 2007...