You are on page 1of 1

Lists revoked

Entity issuing digital


certificates
certificates

Reasons: CA or public
Public or private (e.g.,
key compromised,
Verisign)
updating, expiration,
reissuing
User provides info, CA Certificate Revocation
verifies identity Certificate Authority List
Accessed to check
certificate status of
User generates public other users
and private keys

Viewed or downloaded
Authorising, Storing,
Public key sent to CA, directly into user's Web
and Revoking Digital
inserted into the browser
Certificates
certificate

Publicly accessible
Subordinate entity directory
handling some CA tasks

Registration Authority Contains certificates


Processes certificate and CRLs published by a
Certificate Repository
requests, authenticates CA
users

Often available to all


users through a Web
browser interface

You might also like