CRL Distribution Point objects used for configuring a local CA
Originally Published: 2003-02-03
Article Number
Applies To
Microsoft Windows
UNIX (AIX, HP-UX, Solaris)
Issue
Resolution
Create a local CA with a Custom CA profile allows the administrator to highlight the 'CRL Distribution Points' extension from the available extensions listing. During the CA Certificates Extensions Values configuration a specifed number of DistributionPoint objects can be configured for the cRLDistPoints option. There are three types of DistributionPoint object; distributionPoint, reasons, cRLIssuer.
A cRLIssuer DistributionPoint object has a maximum of eight CRLIssuer objects available; otherName, rfc822Name, dNSName, directoryName, editPartyName, uRL, IPAddress and registeredID.
- otherName requires an OID type-id and value
- directoryName requires a number of RelativeDistinguishedName to be defined
RelativeDistinguishedName attributes available for usage in the directoryName configuration;
- commonName
- countryName
- localityName
- stateOrProvinceName
- organizationName
- organizationalUnitName
- title
- pkcs9email
- postalAddress
- pseudonym
- dateOfBirth
- placeOfBirth
- gender
- countryOfCitizenship
- countryOfResidence
For more information on supported DistributionPoint objects, see the solution regarding Which CRL entry extensions are used and supported?
Related Articles
Invalid CRL Distribution Point in certificate 5Number of Views CRL Distribution Point (CRLdp) causes URLs to fail in RSA Certificate Manager 9Number of Views How to set up a CRL Distribution Point in a certificate during certificate manual approval 8Number of Views How to create and configure certificates for HTTPS access when using intermediate CA certs in RSA Identity Governance & Li… 1.01KNumber of Views How to configure RSA Authentication Manager to send log messages to a local file for an audit trail 300Number of Views
Trending Articles
How to recover the Application and AFX after an unexpected database failure in RSA Identity Governance & Lifecycle RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Troubleshooting AFX Connector issues in RSA Identity Governance & Lifecycle Provisioning-Termination Rule fails to filter on Custom Attributes that have the same Display Names across Multiple Object… RSA Release Notes for RSA Authentication Manager 8.8
Don't see what you're looking for?