Forum Discussion

0_11329's avatar
0_11329
Icon for Nimbostratus rankNimbostratus
Jun 05, 2008

CRL file update

Hi,

 

As part of the implementation of a PKI, I would like to provide the CRL to BipIP 1500 LTM (version 9.3.1) in order to take care of revoked certificats, of course.

 

 

First, I have in mind the fact that I must enter the name of the suitable PEM format file (crl_file.pem in my example) in the "Certificate Revocation List (CRL)" field, and that I must issue the following command from the /config/ssl/ssl.crl directory: openssl crl -in -text -noout

 

 

And then...

 

 

HOW ABOUT REGULARLY UPDATES OF THE crl_file.pem FILE ??? As certificates may be revoked at any moment, I would like to refresh the file everyday...

 

 

So for whom it may concern :

 

- HOW DO YOU ASSURE THE REGULARLY UPDATES OF THE crl_file.pem FILE ?

 

- ANYBODY KNOWS BEST PRACTICE ON THIS SUBJECT ?

 

 

Will apreaciate your point of you & experiences ;7) Thanks a lot in advance.