Ah yes, getting confused.
rather, the cgi should check the crl whether that serial is revoked.

On Mon, 30 Aug 1999, Michael Ströder wrote:

> ssl wrote:
> > 
> > below the cert info, you'll see the "Check Certificate Status" button,
> > [..]
> > By this method, the cert must have "nsRevocationUrl" pointing
> > to a cgi to check it.
> 
> This on-line certificate validation has nothing to do with CRLs at all.
> 
> Ciao, Michael.
> ______________________________________________________________________
> OpenSSL Project                                 http://www.openssl.org
> User Support Mailing List                    [EMAIL PROTECTED]
> Automated List Manager                           [EMAIL PROTECTED]
> 

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to