Fortinet black logo

CLI Reference

system certificate crl

system certificate crl

Use this command to import certificate revocation lists.

To ensure that your FortiMail unit validates only certificates that have not been revoked, you should periodically upload a current certificate revocation list, which may be provided by certificate authorities (CA). Alternatively, you can use online certificate status protocol (OCSP) to query for certificate statuses. For more information, see the FortiMail Administration Guide.

Syntax

config system certificate crl

edit <name_str>

set crl <cert_str>

end

Variable

Description

Default

<name_str>

Enter a name for this certificate revocation list.

crl <cert_str>

Enter or paste the certificate in PEM format to import it.

Related topics

system central-management

system certificate local

system certificate remote

system certificate crl

Use this command to import certificate revocation lists.

To ensure that your FortiMail unit validates only certificates that have not been revoked, you should periodically upload a current certificate revocation list, which may be provided by certificate authorities (CA). Alternatively, you can use online certificate status protocol (OCSP) to query for certificate statuses. For more information, see the FortiMail Administration Guide.

Syntax

config system certificate crl

edit <name_str>

set crl <cert_str>

end

Variable

Description

Default

<name_str>

Enter a name for this certificate revocation list.

crl <cert_str>

Enter or paste the certificate in PEM format to import it.

Related topics

system central-management

system certificate local

system certificate remote