Enables the override of the OCSP responder so that the default OCSP responder is used when the certificate is being validated even if the certificate references an OCSP responder.
Note
The OCSP override responder setting is disabled by default.
For details about certificate revocation, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.
Note
This command is not currently used on the Intelligent Virtual Execution - Server compute node.
Syntax
[no] aaa authentication certificate ocsp override-responder
Parameters
no
Use the no form of this command to disable the override of the OCSP responder from the certificate that is being validated.
Example
The following example shows how to enable the OCSP override responder.
hostname (config) # aaa authentication certificate ocsp override-responder
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.9.1
Endpoint Security (HX): Release 2.5
Network Security: Release 7.9.1
Intelligent Virtual Execution - Server: Release 7.9.1
Email Security — Server: Release 7.9.0