Create an online certificate status protocol (OCSP)

Create an OCSP service on EAA and add it to an identity provider (IdP).

Before you begin

First, upload your certificates to Enterprise Application Access (EAA). For more information see Certificates in EAA.

Create an online certificate status protocol (OCSP) service on EAA, and add it to an identity provider (IdP).

How to

  1. Log in to the Enterprise Application Access (EAA) Management Portal.
  2. From the top menu bar, click System > OCSP.
    The OCSP page appears.
  3. Click Add OCSP.
    The OCSP information page appears.
  4. Enter a unique name for the OCSP server.
  5. Select the OCSP server type.
    If internal, select an EAA connector where the service is reachable from.
  6. In the Validation URL field, enter the URL of the OCSP responder that EAA uses to validate the certificate.
  7. Click Save changes. The OCSP appears as a card on the OCSP page.

Next steps

Create and deploy a new IdP with OCSP as the certificate validation method. See Add a new identity provider . In the IdP General Settings section, check Certificate Authentication, then select OCSP as the Certificate Validation Method.