Root Causes 94: Revocation Checking Through OCSP and CRL

26/05/2020 23 min
Root Causes 94: Revocation Checking Through OCSP and CRL

Listen "Root Causes 94: Revocation Checking Through OCSP and CRL"

Episode Synopsis

One essential portion of the certificate lifecycle is the ability to revoke certificates. Public SSL certificates use a pair of mechanisms to communicate this revocation status to client machines, CRL and OCSP. In this episode we explain how these mechanisms work and some of their strengths and challenges.