The CA needs a configuration that tells it how the CRLs and certificates are to be published. This is done with a generic publishing method configuration.

The publishing methods supported by SSH Tectia Certifier are Lightweight Directory Access Protocol (LDAP) and HTTP. Also external methods can be plugged in the system and revocation status can be published through the OCSP protocol as well.

To edit certificate publishing methods, click Edit Publish on the Certification Authority page. To add a new publishing method, choose the publishing method from the Add new method drop-down list and click Add. For certificate publishing, LDAP and External methods are supported. For CRL publishing, LDAP, HTTP, OCSP, and External methods are supported.

Figure : The Edit Certificate Publishing Methods page

LDAP Publishing Method

HTTP Publishing Method

OCSP Publishing Method

External Publishing Method

