Hi, We are testing the Pulse client (3.0.1 - SA7.2R1.1) with certificate authentication, which works nicely untill I enable CRL checking on the SA. I have added the trused client CA's and configured "Client certificate status checking" to "Use CRLs (Certificate Revocation Lists)". The CRL distribution points were added from the CA certificate and upon manually doing an "Update now", i get " Last result: Success ". When connecting the client, the message i get in the user access log is the following: AUT30641 - The X.509 certificate for 'PC-name' issued by CN=CANAME, DC=DOMAINNAME failed in CRL checking; Status '3'; Detail: 'unable to get certificate CRL' Could anyone shed some light on this error for me? thanks,
... View more