CA Server Settings

The CA server you use can be owned and operated by an independent CA or by your own organization, in which case you become your own CA. If you use an independent CA, you must contact them for the addresses of their CA and CRL servers (for obtaining certificates and certificate revocation lists), and for the information they require when submitting personal certificate requests. When you are your own CA, you determine this information yourself.

To Configure CA Server Settings

  1. Enter the necessary information in the following fields.

X509 Certificate Path Validation Level: Within X509 is a specification for a certificate which binds an entity's distinguished name to its public key through the use of a digital signature. Select Full to validate the certificate path all the way back to the root, or select  Partial to validate it only part of the way. The CRL distribution point extension (.cdp) in an X509 certificate can be either an HTTP URL or an LDAP URL.

Certificate Revocation Check Settings:

CRL Settings:

OCSP Settings:

SCEP Settings:

Note: Depending on the Certificate Authority, the URLs for RA and CA might be the same.

  1. Click OK to save the settings.