33-27
Cisco ASDM User Guide
OL-16647-01
Chapter 33 Configuring Certificates
Manage User Certificates
Whenever you change any certificate status, be sure to update the CRL to reflect the latest changes.
To change certificate status, see Revoking a Local CA Certificate and Unrevoking a Local CA
Certificate.
Revoking a Local CA Certificate
The Local CA Server keeps track of the lifetime of every user certificate and e-mails renewal notices
when they are needed. If a user’s certificate lifetime period runs out, that user’s access is revoked. The
Local CA also marks the certificate as revoked in the certificate database and automatically updates the
information and reissues the CRL.
Unrevoking a Local CA Certificate
An already revoked user certificate can have privileges restored with notification by e-mail. Select a
revoked user’s certificate and click Unrevoke to restore access. The Local CA also marks the certificate
as unrevoked in the certificate database, automatically updates the certificate information, and reissues
an updated CRL.