Dear Jernej,

@26-Jun-2005, 10:47 +0200 (26-Jun 09:47 UK time) Jernej Simoncic [JS]
in mid:[EMAIL PROTECTED] said to Marck:

>> TB uses SSL for secure mail server connections. Ergo TB must refer to
>> the authoritative servers for revocation lists.

JS> Actually, I'd think that it's checking CRLs primarily for S/MIME
JS> certificate revocations.

.. It's only going to do that for the root and trusted CAs in the
address book. I doubt it's going to do that for generally held
certificates. Even then, certificate status is usual clear in the
encapsulated keys passed with an S/MIME signature.

In which case, while I accept that checking for revocations on CAs is
possible, I stand by the analysis that it's checking for revocations
on held SSL certs.

-- 
Cheers --  //.arck D Pearlstone -- List moderator and fellow end user
TB! v3.5.0.31 on Windows XP 5.1.2600 Service Pack 2
'
________________________________________________________

http://www.silverstones.com/thebat/TBUDLInfo.html

Reply via email to