OK, this has been kicking around for a while. Could some one investigate and provide guidance on how we can refresh the CRL's? Looking at the code it doesn't seem there is an explicit way of doing this. I haven't even found any information on CRL refreshing on the web for any OpenSSL based product. GSI does it but it's a brute force solution. No small wonder as I can't see any OpenSSL API to do it otherwise. I'd like to get this wrapped up and in R5 as it's a constant pain but I need more suggestions than complaints. -- You are receiving this because you are subscribed to this thread. Reply to this email directly or view it on GitHub: https://github.com/xrootd/xrootd/issues/750#issuecomment-616989297 ######################################################################## Use REPLY-ALL to reply to list To unsubscribe from the XROOTD-DEV list, click the following link: https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1