config : system certificate crl
 
system certificate crl
Use this command to edit the comment or URL associated with a previously uploaded certificate revocation list (CRL).
To ensure that your FortiWeb appliance validates only certificates that have not been revoked, you should periodically upload a current certificate revocation list, which may be provided by certificate authorities (CA).
For information on how to upload a CRL, see the FortiWeb Administration Guide.
To use this command, your administrator account’s access control profile must have either w or rw permission to the admingrp area. For more information, see “Permissions”.
Syntax
config system certificate crl
edit <crl_name>
set comment "<comment_str>"
set url <crl_str>
next
end
Variable
Description
Default
<crl_name>
Type the name of a CRL. The maximum length is 35 characters.
No default.
comment "<comment_str>"
Type a description or other comment. If the comment is more than one word or contains an apostrophe, surround the comment with double quotes ( " ). The maximum length is 127 characters.
No default.
url <crl_str>
If you did not upload a CRL file, but instead will query for it from an HTTP or OCSP server, enter the URL of the CRL. The maximum length is 127 characters.
No default.
Related topics
config system certificate local
config system certificate verify