expected behavior when trusting certificates|OPC UA Standard|Forum|OPC Foundation

Avatar
Search
Forum Scope


Match



Forum Options



Minimum search word length is 3 characters - maximum search word length is 84 characters
Lost password?
sp_Feed sp_PrintTopic sp_TopicIcon
expected behavior when trusting certificates
Avatar
George Badge
New Member
Members
Forum Posts: 1
Member Since:
12/09/2020
sp_UserOfflineSmall Offline
1
12/09/2020 - 12:17
sp_Permalink sp_Print

I've looked in the specifications (parts 3-6) and in the forum but can't find what is expected when a certificate is in a servers certificate store in the trusted folder and in the rejected folder.  For some reason if someone does not move the certificate from rejected to trusted but copies it what should the server do?  Should it look in the trusted first and ignore that it's also in rejected or maybe look at rejected first and ignore it's also in the trusted folder?

Thanks.

Avatar
Randy Armstrong
Admin
Forum Posts: 1564
Member Since:
05/30/2017
sp_UserOnlineSmall Online
2
12/09/2020 - 19:18
sp_Permalink sp_Print

The rejected folder should never be used by the server for verification.

It is simply a convenience to make it easier for server administrators to review client certificates before trusting them.

Forum Timezone: America/Phoenix
Most Users Ever Online: 510
Currently Online: Randy Armstrong (Sparhawk), Randy Armstrong
Guest(s) 27
Currently Browsing this Page:
1 Guest(s)
Top Posters:
Forum Stats:
Groups: 2
Forums: 10
Topics: 1435
Posts: 4855