Key Management
There are five requirements to be satisfied:
- Must comply with the Common Policy (Requirement
87)
- All certificates issued will fall under the the id-CommonHW policy
and id-CommonAuth policy (Requirement
88)
- Certificate Revocation Lists (CRLs) must be issued every
18-hours (Requirement
89)
- Certificates and CRLs will be distributed via the LDAP &
HTTP (Requirement
90)
- OCSP is required (Requirement
91)