Require-Crl - IBM WebSphere XS40 Command Reference Manual

Datapower xml security gateway
Table of Contents

Advertisement

The certificate policies extension contains a sequence of one or more policy
information terms, each of which consists of an object identifier (OID) and optional
qualifiers.
Note: The use of qualifiers is not supported. If present, they are ignored.
In a host certificate, policy information terms indicate the policy under which the
certificate has been issued and the purposes for which the certificate may be used.
In a CA certificate, policy information terms limit the set of policies for certification
paths which include this certificate. When a CA does not wish to limit the set of
policies for certification paths which include this certificate, it may assert the
special policy, anyPolicy, with an OID of 2.5.29.32.0.
You use this command as often as needed to construct a set of Certificate Policy
identifiers; by default, the initial Certificate Policy Set consists of the single OID
2.5.29.32.0, identifying anyPolicy.
All members of the constructed set are used in certificate chain processing as
described in Section 6.1.1 of RFC 3280.
Use the no initial-policy-set command to remove a Certificate Policy from the
Validation Credentials List.
Related Commands
explicit-policy, inhibit-anypolicy
Examples
v Enters Validation Credentials Mode to create the ValCred-1 Validation
v Removes the specified OID from the set of Certificate Policy identifiers

require-crl

Mandates the use of Certificate Revocation Lists during certificate chain processing.
Syntax
require-crl
no require-crl
applicability of a type of certificate to the authentication of electronic data
interchange transactions for the trading of goods within a given price range.
Credentials List. Adds the specified OID to the set of Certificate Policy
identifiers associated with the current Validation Credentials List.
# valcred ValCred-1
Crypto Validation Credentials configuration mode
# initial-policy-set 1.3.6.1.4.1.14248.1.1
#
associated with the current Validation Credentials List.
# valcred ValCred-1
Crypto Validation Credentials configuration mode
# no initial-policy-set 1.3.6.1.4.1.14248.1.1
#
Chapter 14. Crypto Validation Credentials configuration mode
255

Advertisement

Table of Contents
loading

Table of Contents