I would like to add CRL checking to the application I am working on. On the desktop I use the javax.naming package but this is not available on Android. I have found little discussion of this and wonder how it is implemented for Android applications.
I wonder whether app developers rely on the certificate's CA being in their cacerts or having a copy of the certificate in a private store. Are java app developers checking OCSP or CRL? I am at a loss. Son -- You received this message because you are subscribed to the Google Groups "Android Security Discussions" group. To unsubscribe from this group and stop receiving emails from it, send an email to android-security-discuss+unsubscr...@googlegroups.com. To post to this group, send email to android-security-discuss@googlegroups.com. Visit this group at http://groups.google.com/group/android-security-discuss. For more options, visit https://groups.google.com/groups/opt_out.