Certificate-Based User Authentications Flashcards
1
Q
Certificate Revocation List(CRL)
A
This is basically a singed list that the CA publishes on a website that can be read by the authentication servers
2
Q
Online Certificate Status Protocol (OCSP)
A
OSCP allows the authentication server to send a real-time request (similar to an HTTP web request) to the service running on the CA or another device and checking the status of the certificate right then and there
3
Q
CAP
A
certificate Authentication Profile- examine a specific field and map it to username for authorization