Permissions Manager Items: Security\PKI

Item Name

Sub-group

UI Description

Certificate host name must match host being contacted

 

Specify whether host name matching is required when validating host certificates.

Client Authentication

 

Specify whether to find a certificate for authentication or use a particular certificate.

Reflection Certificate Manager button

 

Open the Reflection Certificate Manager.

Retrieve and validate certificate chain

 

Specifies whether certificates presented for host authentication are checked to determine if they are valid and signed by a trusted CA.

NOTE:This option is available on the SSL/TLS tab on the Security Properties dialog box.

Use CRL

 

Specify whether your client session checks for certificate revocation using CRLs (Certificate Revocation Lists) when validating host certificates.

Use OCSP

 

Specify whether your client session checks for certificate revocation using OCSP (Online Certificate Status Protocol) responders when validating host certificates.

View System Certificates button

 

Open the Certificates dialog box, which you can use to manage certificates in your system stores.