1 person found this helpful
This is because the CRL information of your CA is cached in the signature
s.xml file. The file size depends on how large your certificate's CA's CRL
Thanks tzeng for the answer, I really appreciate it. Can you indulge me in a followup question? Is there anything that can be done about this or is it a fact of life we have to live with for this certificate?
This is a fact of life.
Could you post the URL for the CRL info. if it is a commercial certificate?
I would like to get the CRL size data. We have looked at some CRL sizes. While some are relatively big, nothing is as big as yours.
Hi tzeng, or anyone else who can help. Sorry for the long delay, I just got a response back from our IT department. So, from what I understand this isn't a revocation list of our own certificates, but is a revocation list of all certficates for the CA. In our case we are using Thawte. So, wouldn't everyone who is using Thawte have this same problem? I just don't get it, why would my app need to have encoded into it revocations from other companies... shoudn't it just be a list of revocations from our company? Anyway, not really my area, but since Thawte is one of the more popular CA's I would think this would be an irritation for a lot of people. Are we doing something wrong? Am I just not getting it?
Here's the URL I was provided by our IT for the url you requested.
The CRL is from a CA, not related to each company that purchases a cert. from the CA.
You company's cert's revocation should be 0, otherwise adt won't package an AIR file with your cert.
CRL list has been growing. We didn't think at 1.0 that this is too large to be a concern.
I will check this out again.
You can file a feature request/Bug at:
if you want to.
We're having the same problem with our app. Our signature.xml file is over 1.7MB - that's more than 4 times the size of the SWF! Is there anything we can do to reduce its size? If there's some data cached in the XML, is there any way to manually remove it?