Hi Andy,

It depends if the certificate was self-signed or issued by an
certificate authority. I can only speak as to how CA certificates are
handled. The firewall module will check the CRL specified in the
presented certificate by HTTP and/or LDAP. So, make sure that
certificates have a CRL entry and that it is visible by the firewall
module.

Checking who issued the certificate is one reason CA's are there to
begin with. :) I would only enter CA's that are *completely* under your
control (your own CA, Verisign OnSite, etc).

 -----Original Message-----
From:   Andy Huffer [mailto:[EMAIL PROTECTED]] 
Sent:   Wednesday, March 21, 2001 04:59
To:     [EMAIL PROTECTED]
Subject:        [FW1] Certificates


Hi


Does anyone know how fw-1 checks for certificates, and how you set it up

Can you check who issued the certificate 


Andy


========================================================================
========
     To unsubscribe from this mailing list, please see the instructions
at
               http://www.checkpoint.com/services/mailing.html
========================================================================
========




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to