system certificate crl
Use this command to import certificate revocation lists.
To ensure that your FortiMail unit validates only certificates that have not been revoked, you should periodically upload a current certificate revocation list, which may be provided by certificate authorities (CA). Alternatively, you can use online certificate status protocol (OCSP) to query for certificate statuses. For more information, see the FortiMail Administration Guide.
Syntax
config system certificate crl
edit <name_str>
set crl <cert_str>
end
Variable |
Description |
Default |
Enter a name for this certificate revocation list. |
|
|
Enter or paste the certificate in PEM format to import it. |
|