<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Secure Authentication中的主题 Re: Support of CDP/OCSP for SE050 certificates revocation</title>
    <link>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1598434#M1159</link>
    <description>Thank you.&lt;BR /&gt;</description>
    <pubDate>Mon, 13 Feb 2023 23:45:59 GMT</pubDate>
    <dc:creator>kei_odagiri</dc:creator>
    <dc:date>2023-02-13T23:45:59Z</dc:date>
    <item>
      <title>Support of CDP/OCSP for SE050 certificates revocation</title>
      <link>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1597762#M1156</link>
      <description>&lt;P&gt;I have got a thing to get through about SE050 certificates revocation.&lt;/P&gt;&lt;P&gt;I have known the two intermediate CA was revoked due to receiving NXP's notification. According to the SE050 configurations (AN12436), the certificates named "Cloud Onboarding ECC, SE050C1/SE050C2" have been revoked. I have checked the leaf certificates which were extracted from SE050C1 and downloaded from NXP. These certs don't include the fields such as CPD, OCSP to manipulate certificate revocation. Actually, I tried making my device connect to AWS iot core with the leaf certificate, then it worked to connect to AWS iot core. At first I expected a behavior in which my device with the certificate will be rejected by AWS.&lt;/P&gt;&lt;P&gt;Questions:&lt;/P&gt;&lt;P&gt;1. Currently are you supporting CDP/OCSP server?&lt;/P&gt;&lt;P&gt;2. If not supported, I'd like to know how I can handle this intermediate CA revocation. Especially about connection authentication for cloud service.&lt;/P&gt;&lt;P&gt;Kei Odagiri&lt;/P&gt;&lt;P&gt;Atmark Techno,Inc.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Feb 2023 02:07:48 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1597762#M1156</guid>
      <dc:creator>kei_odagiri</dc:creator>
      <dc:date>2023-02-13T02:07:48Z</dc:date>
    </item>
    <item>
      <title>Re: Support of CDP/OCSP for SE050 certificates revocation</title>
      <link>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1597998#M1157</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/150536"&gt;@kei_odagiri&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;No, we are not&amp;nbsp;supporting CDP/OCSP server, but for your case, you may use other trusted certs inside the SE05x for AWS application, just as mentioned in&amp;nbsp;&lt;A href="https://www.nxp.com/docs/en/application-note/AN12404.pdf" target="_blank"&gt;https://www.nxp.com/docs/en/application-note/AN12404.pdf&lt;/A&gt;&amp;nbsp;, the untrusted certs might still be ok with AWS but not recommended at all.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope that makes sense,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have a great day,&lt;BR /&gt;Kan&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Note:&lt;BR /&gt;- If this post answers your question, please click the "Mark Correct" button. Thank you!&lt;BR /&gt;- We are following threads for 7 weeks after the last post, later replies are ignored&lt;BR /&gt;Please open a new thread and refer to the closed one, if you have a related question at a later point in time.&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;</description>
      <pubDate>Mon, 13 Feb 2023 08:18:40 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1597998#M1157</guid>
      <dc:creator>Kan_Li</dc:creator>
      <dc:date>2023-02-13T08:18:40Z</dc:date>
    </item>
    <item>
      <title>Re: Support of CDP/OCSP for SE050 certificates revocation</title>
      <link>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1598434#M1159</link>
      <description>Thank you.&lt;BR /&gt;</description>
      <pubDate>Mon, 13 Feb 2023 23:45:59 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Secure-Authentication/Support-of-CDP-OCSP-for-SE050-certificates-revocation/m-p/1598434#M1159</guid>
      <dc:creator>kei_odagiri</dc:creator>
      <dc:date>2023-02-13T23:45:59Z</dc:date>
    </item>
  </channel>
</rss>

