AddSignProcessRevocationCRL

Security and signatures

Description

Adds a DER-encoded X.509 certificate revocation list to the adbe-revocationInfoArchival signed attribute of a PDF signing process

Syntax

Delphi

Function TPDFlib.AddSignProcessRevocationCRL(SignProcessID: Integer; Const CRLDER: AnsiString): Integer;

ActiveX

Function PDFlib::AddSignProcessRevocationCRL(SignProcessID As Long, CRLDER As Variant) As Long

DLL

int DLAddSignProcessRevocationCRL(int InstanceID, int SignProcessID, const char* CRLDER, int CRLLength);

Parameters

SignProcessIDValue returned by a NewSignProcessFrom* function
CRLDEROne complete DER SEQUENCE containing an X.509 CRL

Return values

1The CRL was accepted or was already present
0The process id, DER encoding, or aggregate size was invalid

Remarks

Duplicate byte-identical CRLs are stored once, and combined revocation material is limited to 24 MiB per process

The attribute is emitted only when the final SubFilter is adbe.pkcs7.detached; PAdES workflows should use a Document Security Store instead

See also

AddSignProcessRevocationOCSP, ClearSignProcessRevocationInfo, AddPAdESDSSCRL