What information is contained in a certificate?
X.509 Version number Serial number Algorithm Hash Issuer Digital signature of CA
What is a CRL?
Certificate Revocation List
Certificate can be revoked if compromised based on serial number
What is OCSP?
Online Certificate Status Protocol
Targets individual certificate as opposed to parsing through entire list
What is CSR?
Certificate Signing Request
Uses PKCS #10
What is PKCS?
Public Key Cryptography Standards
What are the types of CA?
Root
Intermediate