A CRL (certificate revocation list) is a list of revoked certificates that are no longer valid. A certificate can be revoked if the CA (certificate authority) has improperly issued a certificate, or if a private key is compromised. The most common reason for revocation is that the user is no longer in sole possession of the private key.
To override an access point profile's CRL configurations:
The Device Overrides screen displays. This screen lists devices within the managed network.
The selected access point's configuration menu displays.
The certificate revocation list (CRL) configuration screen displays.
Note
A blue override icon (to the left of a parameter) defines the parameter as having an override applied. To remove an override go to the Basic Configuration section of the device and click Clear Overrides. This removes all overrides from the device.
Use this option to quarantine certificates from use in the network. Additionally, a certificate can be placed on hold for a user defined period. If, for instance, a private key was found and nobody had access to it, its status could be reinstated.
Trustpoint Name |
Provide the name of the trustpoint. The name should not exceed 32 characters. |
URL |
Enter the third-party resource ensuring the trustpoint's legitimacy. |
Hours |
Use this spinner control to specify an interval (in hours) after which a device copies a CRL file from an external server and associates it with a trustpoint. |
Click Reset to revert to the last saved configuration.