Integrating with a security infrastructure

The Signature service accesses certificates, credentials, and revocation lists that are stored in Trust Store Management. It can also use Trust Store Management to access credentials that are stored in Hardware Security Module (HSM) devices. (See Managing HSM credentials in LiveCycle Administration Console Help.)

The Signature service also supports communicating with external resources for retrieving certificates and validating signatures:

  • LDAP/LDAPs and HTTP/HTTPs queries for retrieving certificates for chain validation.

  • Connecting to TSAs using HTTP and HTTPs.

  • Retrieving CRLs using HTTP/HTTPs and LDAP/LDAPs. The Signature service also supports offline CRLs that are stored using Trust Store Management.

  • Connecting to OCSP servers.

  • Integrating with external service providers for retrieving credentials and verifying certificates.

// Ethnio survey code removed