AddSignProcessRevocationCRL
Security and signatures
Description
Adds a DER-encoded X.509 certificate revocation list to the adbe-revocationInfoArchival signed attribute of a PDF signing process
Syntax
Delphi
Function TPDFlib.AddSignProcessRevocationCRL(SignProcessID: Integer; Const CRLDER: AnsiString): Integer;
ActiveX
Function PDFlib::AddSignProcessRevocationCRL(SignProcessID As Long, CRLDER As Variant) As Long
DLL
int DLAddSignProcessRevocationCRL(int InstanceID, int SignProcessID, const char* CRLDER, int CRLLength);
Parameters
| SignProcessID | Value returned by a NewSignProcessFrom* function |
|---|---|
| CRLDER | One complete DER SEQUENCE containing an X.509 CRL |
Return values
| 1 | The CRL was accepted or was already present |
|---|---|
| 0 | The process id, DER encoding, or aggregate size was invalid |
Remarks
Duplicate byte-identical CRLs are stored once, and combined revocation material is limited to 24 MiB per process
The attribute is emitted only when the final SubFilter is adbe.pkcs7.detached; PAdES workflows should use a Document Security Store instead
See also
AddSignProcessRevocationOCSP, ClearSignProcessRevocationInfo, AddPAdESDSSCRL