Im trying to get my head around how Certificate Relocation Lists operate and how they update.
So say my server xyz.com has a certificate with a CRL Distribution Point configured as myissuer.com/thelist.crl
Now ive monitored the communication on my network using wireshark when connecting to xyz.com and i dont see any calls to myissuer.com to get the CRL.
So ive two questions:
When does the call to the CRL Distribution Point actually occur and how often?
If i download and install this CRL file manually does my client still try and connect to the configured CRL Distribution Point?