Validating client certificates with OCSP and/or CRL

Not applicable

Hey folks.

I've been reading through the forums for relevant answers to this question. A similar question was asked in Does Apigee supports OCSP/CRL?

However i'm trying the get this question answered from the clients side. I would like to know if Apigee checks the validity of client certificates using for example OCSP or CRL. OCSP stapling seems to be a convenience to add a the OCSP response for the server certificate during the handshake, but i want to know the revocation state of the client certificate as well.

Also there is an option in the virtual host config called "IgnoreValidationErrors", but i can't find any details on what would be included in this "validation".

Anybody here have some experience with this?

Cheers,

Hugo

2 1 551
1 REPLY 1

@Dino-at-Google we are facing the same issue . As we want to validate cert with CRL using serial number. can you please provide your inputs on the same .

Thanks

Hemant Sharma

,

@Dino-at-Google we are also facing the same issue . can you please help on the same.