OCSP and CRL access information

May 25, 2018 in Windows and Certificate FAQ


CRLs and OCSP use HTTP to retrieve information from the following servers. If you are a network administrator for your organization, make sure all computers in your network that might encounter a digital certificate issued by us can access these CRL and OCSP services.

Do not use the Destination IP information as this is subject to change.

Service

DNS Hostname(s)

Destination IPs

Port

OSCP

ocsp.sectigo.com

Info Changes

tcp/80

OSCP

ocsp.usertrust.com

Info Changes

tcp/80

OSCP

ocsp.comodoca.com

Info Changes

tcp/80

Service

DNS Hostname(s)

Destination IPs (subject to change)

Port

CRL

crl.sectigo.com

Info Changes

tcp/80

CRL

crl.usertrust.com

Info Changes

tcp/80

CRL

crl.comodoca.com

Info Changes

tcp/80


note: This table is subject to change over time as we expand our services.