HTTPS policy settings enable
the A digital means of proving your identity. When you send a digitally-signed message, you are sending your certificate and public key. Certificates are issued by a certification authority and can expire or be revoked. checking thereby
removing the burden of responsibility from end users who may unknowingly
accept bogus or invalid certificates. The administrator can define the
policy relating to the certificate checks applied which includes checking
for the common name, expiration date, revocation status, and the issuer.
Modifying this setting will affect how the policy is applied and may require a proxy restart involving disconnection of the users from their current web session. We recommend that you use OCSP only in addition to CRL checking because few Certificate Authorities currently provide OCSP responders. |
© 1995–2018 Clearswift Ltd.