Scenario 1.6: Set Up CRL/OCSP Infrastructure

Category: PKI Infrastructure
Complexity: ⭐⭐⭐⭐ (Very High)
Prerequisites: 1.2 Create Intermediate CA
Status: ⏳ Planned


Description

This scenario describes setting up a Revocation Infrastructure for Post-Quantum certificates. This includes Certificate Revocation Lists (CRLs) and Online Certificate Status Protocol (OCSP) responders.

What is set up:

  • CRL Distribution Points (CDP)
  • OCSP Responder with ML-DSA signing
  • Authority Information Access (AIA) Extensions

Content in Preparation

This scenario is currently being documented. The complete documentation will be available in a future version.


Relationship Scenario Description
Prerequisite 1.2 Intermediate CA CA for CRL signing
Prerequisite 1.5 Certificate Policy Policy with revocation requirements
Usage 6. Revocation Revoke certificates

« ← 1.5 Certificate Policy | ▲ PKI Infrastructure | 2. CSR → »


Wolfgang van der Stille @ EMSR DATA d.o.o. - Post-Quantum Cryptography Professional

Zuletzt geändert: on 2026/01/30 at 06:31 AM