The NPKD Service provides Certificate Revocation Lists (CRLs) to Inspection Systems (IS), enabling them to determine whether a Document Signer (DS) certificate has been revoked. CRLs can be added to the NPKD Service either by manual import or by downloading them from the ICAO Public Key Directory (PKD).


The Manage CRLs module provides a centralized interface for viewing, importing, exporting, publishing, and maintaining CRLs within the NPKD Service.


To access this functionality, navigate to Manage CRLs. The following screen is displayed:



The configuration items are as follows: 


Items

Description

CRL Number

Displays the unique CRL number assigned to the CRL.

Issuer DN

Displays the Distinguished Name (DN) of the authority that issued the CRL.

This Update

Indicates the date and time when the CRL was last issued or updated.

Next Update

Indicates the date and time when the next CRL update is expected.

Country

Specifies the country associated with the CRL.

Source

Indicates how the CRL was imported into the NPKD Service. The available values are:

  • Manual: CRL imported manually from the local file system using the Import CRLs option.
  • ICAO PKD: CRL downloaded automatically from the ICAO PKD.

Status

Displays the current validation status of the CRL. The status can be Valid or Invalid.

Import CRLs

Allows the operator to import a file containing one or more CRLs from the local file system.

View Details

Displays detailed information about the selected CRL.

Export

Exports the selected CRL to the local file system.

Delete

Removes the selected CRL from the NPKD Service repository.

Publish to ICAO

Publishes the selected CRL to the ICAO PKD.



Importing CRLs

CRLs can be imported manually from the local file system in either ZIP or LDIF format.


To import CRLs, click the vertical ellipsis (⋮) at the top-right corner of the screen and select Import CRLs. The following screen is displayed:




Viewing CRL Details

To view detailed information about a CRL, click the vertical ellipsis (⋮) at the end of the corresponding row and select View Details.


The CRL details screen displays information such as the CRL issuer, validity information, source, import date, and other related metadata.




Advanced Search

The Advanced Search feature is available on the Manage CRLs screen and can be accessed by clicking the search icon.



This feature allows operators to search for specific CRLs using one or more of the following criteria:

  • Status
  • Subject DN
  • Issuer DN
  • Valid From
  • Valid To
  • Country
  • Source


See also

Configuring the NPKD Service
Manual Download
Manage Certificates

Manage CRLs
Master Lists

Transaction Logs
Logs Archiving
Alerts

NPKD Service Interface URLs