Certificate Revocation

The Certificate Revocation feature enables the Mobility Master or the Managed Device to perform real-time certificate revocation checks using the OCSP Online Certificate Status Protocol. OCSP is used for determining the current status of a digital certificate without requiring a CRL. , or traditional certificate validation using the CRL Certificate Revocation List. CRL is a list of revoked certificates maintained by a certification authority. client.

Topics in this section include:

Understanding OCSP and CRL

Configuring the Mobility Master or Managed Device as an OCSP Client

Configuring the Mobility Master or Managed Device as a CRL Client

Configuring the Mobility Master or Managed Device as an OCSP Responder

Certificate Revocation Checking for SSH Pubkey Authentication