RE: Client-Certificate blocking without conrolling the issuing CA

2020-12-04 Thread Michael Wojcik
> From: Vincent Truchsess - rockenstein AG > Sent: Friday, 4 December, 2020 08:59 > > That would be the the ideal solution. The problem is that the customer's > security-policy demands dedicated hardware performing IDS/IPS functionality > at the point of TLS-termination. The devices at hand do

RE: Client-Certificate blocking without conrolling the issuing CA

2020-12-04 Thread Michael Wojcik
> From: openssl-users On Behalf Of Vincent > Truchsess - rockenstein AG > Sent: Friday, 4 December, 2020 04:27 > > The organization legally responsible for the application maintains a > blocklist of certificate serials they consider to be invalidated. Also, this > organization does not bother to