How to implement client certificate revocation list checks at scale with API Gateway

ityAs you design your Amazon API Gateway applications to rely on mutual certificate authentication (mTLS), you need to consider how your application will verify the revocation status of a client certificate. In your design, you should account for the performance and availability of your verification mechanism to make sure that your application endpoints perform reliably.

Source: AWS Security Blog

 


Date:

Categorie(s):

Tag(s):