[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Certificate Request Payload




>From draft 6 of ISAKMP
3.10 Certificate Request Payload
..."The responder to the Certificate Request payload MUST send its
immediate certificate,
if certificates are supported, and SHOULD send as much of its
certificate chain as possible."

As part of the certificate chain can we send Certificate Revocation
Lists (CRL) and Authority Revocation
Lists (ARL)?

Or was it intended that the certificate chain only include the immediate
certificates of the users/CAs in 
question?

Thanks
----
Greg Carter
Nortel Secure Networks - Entrust
carterg@entrust.com