PowerCLI-Example-Scripts icon indicating copy to clipboard operation
PowerCLI-Example-Scripts copied to clipboard

Set-SsoAuthenticationPolicy: Certificate Revocation "Disabled" Option?

Open ttierno2 opened this issue 2 years ago • 0 comments

Is your feature request related to a problem? Please describe.

The functions in the AuthenticationPolicy.ps1 do work for me, however when I run the command as such:

Get-SsoAuthenticationPolicy | Set-SsoAuthenticationPolicy -SmartCardAuthnEnabled $true -OCSPEnabled $false -UseInCertCRL $false -SendOCSPNonce $false -UseCRLAsFailOver $false -TrustedCAs $Cert_String**

I end up with an 'Unknown' entry under Certificate Revocation (picture attached) Rev_Unknown

You can see when I dig further that no option is selected here after running that command (picture attached) No_Rev_Op

I don't see a way to set 'Certificate revocation' to disabled.

**(I populate the $Cert_String variable properly)

Describe the solution you'd like

A 'Disabled' parameter here, instead of specifying OCSP and/or CRL options, that would set the 'Certificate revocation' to disabled would be extremely helpful.

Describe alternatives you've considered

No response

Additional context

No response

ttierno2 avatar Feb 06 '23 07:02 ttierno2