Collections:
Other Resources:
Certificate Revocation Reason Codes
What are the reasons why a X.509 certificate got revoked?
✍: FYIcenter.com
When a certificate CA publishes a CRL (Certificate Revocation List) file
with a list of revoked certificates, a revocation reason code will be provided
for each revocation entry.
There are several reason codes commonly used in CRL files:
As you can see, the most serious reason is the "2 - CA Compromise". In this case, all X.509 certificates issued by this CA must be revoked immediately. Using a certificate whose CA private key was compromized is extremely dangerous.
Â
⇒ Examples of Revoked Certificates
⇠CRL File Format and Fields
2019-07-19, ≈11🔥, 0💬
Popular Posts:
How to sign my own CSR to create a self-signed certificate using the OpenSSL "ca" command? You can u...
Certificate summary - Owner: about.me, Messaging Operations, AOL Inc., L=Dulles, ST=Virginia, US Iss...
Certificate Summary: Subject: Sonera Class1 CA Issuer: Sonera Class1 CA Expiration: 2021-04-06 10:49...
Certificate Summary: Subject: IdenTrust Commercial Root CA 1 Issuer: IdenTrust Commercial Root CA 1 ...
Certificate Summary: Subject: Microsoft Time-Stamp Service Issuer: Microsoft Time-Stamp PCA 2010 Exp...