Re: Light-weight certificate revocation lists ?

At 10:26 AM 4/2/97 -0500, Perry E. Metzger wrote:
>I don't mind making provisions for CRLs, but they are an
>extraordinarily limited tool unless you impose very tight constraints
>on the ways that certificates are used, and even then, an adversary
>can probably prevent you from getting a CRL far more easily than they
>could otherwise interfere with you.

It was my intention to let one of the online tests be "go get a current CRL 
and check it", but we haven't specified online tests yet.

