I do not see any specific test in NIST's "Conformance Testing of Relying Party Client Certificate Path Processing Logic" that says *fail* if a CA has no associated CRL. If that is the case, then won't ignoring this failure during cert-verification be okay in context of NIST tests?
Thanks in advance, Vineet
