Permissions Manager Items: Security\PKI

These settings are available in the PKI section of the Secure Shell Settings dialog box.

Item Name

Sub-group

UI Description

Certificate host name must match host being contacted

 

Specifies whether host name matching is required when validating host certificates.

Client Authentication

 

Specifies whether to find a certificate for authentication or use a particular certificate.

Reflection Certificate Manager button

 

Opens the Reflection Certificate Manager.

Retrieve and validate certificate chain

 

Specifies whether certificates presented for host authentication are checked to determine if they are valid and signed by a trusted CA.

Use CRL

 

Specifies whether your client session checks for certificate revocation using CRLs (Certificate Revocation Lists) when validating host certificates.

Use OCSP

 

Specifies whether your client session checks for certificate revocation using OCSP (Online Certificate Status Protocol) responders when validating host certificates.

View System Certificates button

 

Opens the Certificates dialog box, which you can use to manage certificates in your system stores.