Skip to main content

June 20, 2025

Smart Card Certificate Revocation Checking Properties

You set values in the locked.properties file to enable and configure smart card certificate revocation checking.

Table 1 lists the locked.properties file properties for certificate revocation checking.

Properties for Smart Card Certificate Revocation Checking
PropertyDescription
enableRevocationCheckingSet this property to true to enable certificate revocation checking. When this property is set to false, certificate revocation checking is disabled and all other certificate revocation checking properties are ignored. The default value is false.
crlLocationSpecifies the location of the CRL, which can be either a URL or a file path. If you do not specify a URL, or if the specified URL is invalid, Omnissa Horizon uses the list of CRLs on the user certificate if allowCertCRLs is set to true or is not specified. If Omnissa Horizon cannot access a CRL, CRL checking fails.
allowCertCRLsWhen this property is set to true, Omnissa Horizon extracts a list of CRLs from the user certificate. The default value is true.
enableOCSPSet this property to true to enable OCSP certificate revocation checking. The default value is false.
ocspURLSpecifies the URL of an OCSP Responder.
ocspResponderCertSpecifies the file that contains the OCSP Responder's signing certificate. Omnissa Horizon uses this certificate to verify that the OCSP Responder's responses are genuine.
ocspSendNonceWhen this property is set to true, a nonce is sent with OCSP requests to prevent repeated responses. The default value is false.
ocspCRLFailoverWhen this property is set to true, Omnissa Horizon uses CRL checking if OCSP certificate revocation checking fails. The default value is true.

Related information

Logging in with CRL Checking

Logging in with OCSP Certificate Revocation Checking

Configure CRL Checking

Configure OCSP Certificate Revocation Checking

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…