Crldp; Explicit-Policy - IBM WebSphere XS40 Command Reference Manual

Datapower xml security gateway
Table of Contents

Advertisement

Examples
v Enters Validation Credentials Mode to create the ValCred-1 Validation

crldp

Controls support for the X.509 Certificate Distribution Point certificate extension.
Syntax
crldp {ignore | require}
Parameters
ignore (Default) Ignores the certificate extension.
require
Guidelines
This noncritical certificate extension specifies how CRL information is obtained.
Refer to RFC 2527 Internet X.509 Public Key Infrastructure Certificate Policy and
Certification Practices Framework and to RFC 3280 Internet X.509 Public Key
Infrastructure Certificate and Certificate Revocation List (CRL) Profile for information
on Certificate Policies.
Examples
v Enters Validation Credentials Mode to create the ValCred-1 Validation
v Restores the default state.

explicit-policy

Controls support for the initial-explicit-policy variable.
Syntax
explicit-policy
no explicit-policy
Credentials List. Adds the bob-1 certificate alias to the list.
# valcred ValCred-1
Crypto Validation Credentials configuration mode
# certificate bob-1
#
Indicates that a candidate certificate is deemed valid if the presented
certificate chain is terminated by a trust anchor. This method is used only
when if the current Validation Credentials List is used for SSL peer
validation.
Credentials List. Enables support the Certificate Distribution Point extension.
# valcred ValCred-1
Crypto Validation Credentials configuration mode
# crldp require
#
Crypto Validation Credentials configuration mode
# crldp ignore
#
Chapter 14. Crypto Validation Credentials configuration mode
253

Advertisement

Table of Contents
loading

Table of Contents