Each certifier has an Issued Certificate List (ICL) database that is created when the certifier is migrated to the ca process.
每个证明者都有一个已发出证书列表(ICL)数据库,这是在证明者迁移到CA进程时创建的。
Give this collection a name as shown above in Figure 59, then select the keys we imported previously, and click Add to add the collectoon to the certificate list.
为此集合提供一个名称(如上面的图59 所示),然后选择我们先前导入的密钥,并单击Add,以便将集合添加到证书列表。
Rather than relying on a built-in list of certificate issuers, as at present, browsers would instead match the certificates that a site presented to those in the notaries' repository.
而不是像目前这样依靠植入的证书发行者名单,取而代之的是浏览器与证书匹配,这些证书是由网站提供给公证人的仓库。
Furthermore, if a list of trusted subject names is maintained, the subject of signing certificate can be compared to see if it matches any subject in the trusted list.
此外,如果维护了可信的接受方名称列表,那么可以比较已签名证书的接受方,看看它是否匹配可信列表中的接受方。
The certification chain defines the hierarchy of approving certification Authorities, and provides a list of ca certificates required to approve a given personal certificate.
证明链定义了批准认证中心的层次,并且提供了批准一张给定的个人证书所需的ca证书列表。
Instead of verifying the received certificate against the configured host name and validate trust it will first look at a list of server names.
它并不根据配置的主机名检查收到的证书并检查信任关系,而是先查看一个服务器名列表。
Basically this means that the subject of the presented server certificate the one printed for didn't match any entry in the white list.
这基本上意味着提供的服务器证书的主题(错误中的)与白名单中的任何条目都不匹配。
The choice should really be made based on the desired security policy and whether the enterprise is prepared to set up and maintain a certificate revocation list.
实际上,证书类型的选择应该基于理想的安全策略和企业是否准备好建立和维护一个证书撤销列表。
The one thing that can help, the certificate revocation list, is also external to the queue manager.
唯一一种有效的方法证书撤销列表也位于队列管理器之外。
Revocation in this case must be based on the cryptographic fingerprint of the certificate, and the mechanism that provides this functionality is a certificate revocation list (CRL).
在此情况下,撤销必须基于该证书的加密指纹,而提供此功能的机制就是证书撤销列表(CRL)。
The Server's certificate might be optionally checked against a certificate Revocation List.
可以根据证书撤销列表检查服务器的证书,这一点是可选的。
The use of a certificate revocation list is mandatory when using CA issued certificates.
在使用CA颁发的证书时强制使用证书撤销列表。
A certificate revocation list is checked to ensure that the certificate has not been revoked.
检查证书撤销列表以确保证书还没有撤销。
If the trusted list is small (perhaps containing only one self signed certificate), this attack becomes very difficult.
如果受信任列表很小(或许仅包含自签署证书),则发起此类攻击将很困难。
Requests to be verified: Displays a list of Certificate Signing Requests (CSR), submitted from Web browsers, that are due for verification.
Requeststobe verified:显示从Web浏览器提交的需要进行验证的证书签名请求(CSR)列表。
To list the contents of the certificate database issue the following command.
使用以下命令列出证书数据库的内容。
To list what's in your certificate database, you can use the same utility which helped with the import: certutil.
可以使用执行导入时使用的工具certutil列出证书数据库的内容。
In the command, filename is the X.509 certificate file name under the directory as shown in the list above.
在这个命令中,filename是上面列出的目录下的X . 509证书的文件名。
If the certificate subject matches one of the servers on the white list TM1 calls the Windows API explicitly asking to verify this single certificate only.
如果证书主题与白名单中的服务器之一匹配,TM 1就调用WindowsAPI,显式地要求只检查这个证书。
Requests to be fulfilled: Displays a list of CSRs that have been verified and are pending issue of a certificate.
Requeststobefulfilled:显示已经验证的csr列表以及证书的未决问题。
Get the public bit of the new self-signed certificate, which contains both the private and public parts, by selecting Personal Certificates from the drop-down list (see Figure 1).
通过从下拉列表中选择personalCertificates(请参见图1)来获取新的自签名证书的公开位,其中同时包含私有和公开部分。
It is not listed in a certificate revocation list (CRL), which ensures that past subscribers (in other words, those that are no longer customers but were at some time in the past) are denied service.
它没有列入证书撤销列表(certificate revocation list,CRL)中。这样可以确保不为那些过去的订阅者(换句话说,就是那些在过去的某个时间段中是客户,但现在已不再是客户的人)提供服务。
Root.crl (certificate revocation list, optional).
crl(证书撤销列表,可选)。
This will then list the certificate contents on the screen.
这会在屏幕上列出证书的内容。
See the Certificate of Insurance for a complete list of exclusions.
见证书的保险一个完整的排除清单。
No Compromised Key List for this site's certificate HAS been found. You must load the Compromised Key List before continuing.
无法为此网站的证书找到的“折衷密钥列表”。在继续执行之前,必须装入折衷密钥列表。
A certificate template is a set of predefined properties for certificates issued to computers. Select a template from the following list.
证书模板是颁发给计算机的证书的一套预先定义的属性。从以下列表选择一个模板。
No Compromised Key List for the certificate HAS been found. You must load the Compromised Key List before continuing.
找不到此证书的“折衷密钥列表”。在继续执行之前,必须装入折衷密钥列表。
No Compromised Key List for the certificate HAS been found. You must load the Compromised Key List before continuing.
找不到此证书的“折衷密钥列表”。在继续执行之前,必须装入折衷密钥列表。
应用推荐