Timestamping validation should also check TSA certificate

XMLWordPrintable

    • Type: Enhancement
    • Resolution: Won't Fix
    • Priority: P3
    • None
    • Affects Version/s: 6
    • Component/s: deploy
    • generic
    • generic

      If revocation checking is disabled, then we should also allow the timestamp to be valid if the TSA certificate was valid when the timestamp was generated.

      However, if revocation checking is enabled, we need to also check if the TSA certificate was not revoked. This requires adding revocation information to the signed JAR (CRLs or OCSP Responses) when it is signed (see 6890876).

            Assignee:
            Andy Herrick (Inactive)
            Reporter:
            Sean Mullan
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: