Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

Why arent any of my certificates revoking?

$
0
0

So I managed to setup the 3 tier setup from the Brian Komar book,

1) My PKI is 100% OK

2) My OCSP server on the PKI is also showing OK and all certificates and setup seems to be working and OK on the OCSP server side.

3) Every time I request a certificate is shows up on the Certificate Authority MMC instantly.

4) I have 3 different provider links 2 http and 1 LDAP; they can be accessed internally and externally

 

I revoke and publish some certificates to test but they still up and running and green light the user or computer that they were published for in whatever they could before revocation, example NAP access via a RADIUS server is still allowed, my https website still shows a healthy certificate as if nothing has happened.

 

I know this is a very vague explanation of my setup, but I will be happy to provide the required information you need to be able to troubleshoot the setup.  Running the certutil -verify -fetchurl <certname.crt> is pointless at this moment as it plainly shows that certificates are not revoking.

 

Thanks in advance,

Dave.


Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>