Digital Certificates Part 2: Certificate Revocation CRL vs OCSP

preview_player
Показать описание
This video discusses Certificate Revocation and looks in specific at different approach, the Certificate Revocation List (CRL) and the Online Certificate Security Protocol (OCSP). It compares the advantages and disadvantages of both and also introducing issues around privacy. The video also describes how the Certificate Authority maintains the CRL and OCSP and finally discusses what happens when a OCSP server is not available to validate the certificate.
Рекомендации по теме
Комментарии
Автор

You said OCSP problem is the latency (and privacy). But doesnt also checking CRL create latency? or is it negliglble compared to OSCP method? Thanks

SolkanFTW