Collections:
Other Resources:
Certificate Revocation Reason Codes
What are the reasons why a X.509 certificate got revoked?
✍: FYIcenter.com
When a certificate CA publishes a CRL (Certificate Revocation List) file
with a list of revoked certificates, a revocation reason code will be provided
for each revocation entry.
There are several reason codes commonly used in CRL files:
As you can see, the most serious reason is the "2 - CA Compromise". In this case, all X.509 certificates issued by this CA must be revoked immediately. Using a certificate whose CA private key was compromized is extremely dangerous.
Â
⇒ Examples of Revoked Certificates
⇠CRL File Format and Fields
2019-07-19, ≈11🔥, 0💬
Popular Posts:
Certificate summary - Owner: DigiCert SHA2 Secure Server CA, DigiCert Inc, US Issuer: DigiCert Globa...
How to generate a new self-signed certificate using OpenSSL "req -new -x509" command? I have an RSA ...
How to view the ASN.1 structure of an RSA public key using the OpenSSL "asn1parse" command? You can ...
Certificate Summary: Subject: DO_NOT_TRUST_FiddlerRoot Issuer: DO_NOT_TRUST_FiddlerRoot Expiration: ...
Certificate Summary: Subject: *.google.com Issuer: Google Internet Authority Expiration: 2013-10-31 ...