Configuring with Web Based Management
4.9 Security
SINEMA Remote Connect - Server
98 Operating Instructions, 11/2017, C79000-G8976-C383-04
Importing the certificate revocation list as a file
1. In the "Revocation list" tab, click the "Import from file" button.
2. Click the "Select file" button and select the certificate revocation list. Generally the file has
the extension *.crl.
3. Confirm your selection with the "Open" button. To import the certificate revocation list
click the "Save" button.
Obtaining the certificate revocation list automatically
According to the X.509v3 standard n the certificate you can specify a certificate revocation
list distribution point. To do this in the attribute "CRL Distribution Point" specify a URL at
which the current CRL of this certification authority is stored. To use this function, the
attribute must exist in the PKI CA certificate.
At certain intervals SINEMA RC downloads the file and uses it. You specify the interval on
the "Settings" tab.
Settings of the certificate revocation list
Enable CRL checking When enabled, the validity of the user certificate is checked based on
the certificate revocation list.
CRL update interval
Specify the intervals at which the certificate revocation list is checked for
changes. If this is the case, the certificate revocation list is downloaded
to the distribution point.
Allow missing CRL
• Disabled
Every PKI CA certificate requires a valid certificate revocation list. If
this is missing, the user certificates derived from the PKI CA certifi-
cate are invalid.
• Enabled:
When enabled, the absence of the certificate revocation list is al-
lowed. Please note that if the certificate revocation list is missing, all
the user certificates derived from the PKI CA certificate are permit-