|
Posted by snickered on September 10, 2008, 7:20 pm
Please log in for more thread options
On Sep 10, 10:14=A0am, "Brian Komar \(MVP\)"
> What client OS and what CA OS are you working with?
> Brian
>
>
>
> >I have been trying to get my computers to delete revocated
> > certificates for about a week and haven't been successful. =A0I have a
> > couple of questions.
>
> > 1. =A0How does the client know when to check for a new CRL? =A0I know t=
hat
> > it's as long as the CRL is valid but how do I determine that? =A0Also,
> > when I delete my urlcache with 'certutil -urlcache * delete' and then
> > do 'certutil -pulse' the cache isn't updated.
>
> > 2. =A0With that in mind how do I get manually get my client computers t=
o
> > check for revoked certificates that have been issued to that
> > computer? =A0I have tried 'gpupdate /target:computer' and 'certutil -
> > pulse' but neither seem to be doing the trick.
>
> > I will name my kid after you if you can answer my questions... I have
> > spent waaaay too much time on this thing. =A0TIA.
The famous Brian!! Love your book. I am working with 2008 as my CA
(followed your setup in ch. 6) and 2003/Vista as the clients.
|