Welcome, Guest. Please login or register.
Did you miss your activation email?
May 21, 2013, 01:09:36 AM

Login with username, password and session length

663318 Posts
70517 Topics
145181 Members

Latest Member: Regardson

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Learn about Computer Security and Interact with Security Experts
| |-+  Digital Certificates, Encryption and Digital Signing
| | |-+  ocsp response
« previous next »
Pages: [1] Go Down Print
Author Topic: ocsp response  (Read 26861 times)
eden23
Newbie
*
Offline Offline

Posts: 17


« on: March 17, 2011, 04:37:04 PM »

Hi there everybody,
I'm running several customization products from Stardock. (http://www.stardock.com/)
Some of their software, specifically WindowFX and Deskscapes, constantly connect to the internet to download ocsp-response files from Comodo CA Ltd.
Here are some sample IP Adresses:
Wfx - 149.5.128.169 / 91.199.212.169
Deskscapes - 91.209.196.169 / 149.5.128.169 / 91.199.212.169.
Both applications want to access the internet about once a week.
Questions:
1) Why those conections? What is being downloaded?
2) How can it be stopped?
Anything to shed light on this will be greatly appreciated....
 Smiley
Logged
Sal Amander
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 607



WWW
« Reply #1 on: March 17, 2011, 10:59:59 PM »

OCSP is Online Certificate Status Protocol. It's a method by which a digital certificate certificate is checked for validity via the CA that issued it.
Logged
eden23
Newbie
*
Offline Offline

Posts: 17


« Reply #2 on: March 18, 2011, 12:53:42 AM »

Hmm.. why does it happen so frequently and why does other software never download ocsp responses.
Personally I'm totally satisfied with any certificate status, so how can it be stopped?
Logged
Sal Amander
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 607



WWW
« Reply #3 on: March 18, 2011, 10:28:28 AM »

Hmm.. why does it happen so frequently and why does other software never download ocsp responses.
It happens a lot more rapidly because a certificate can be revoked at any time. These OCSP responses take up MINIMAL bandwidth (less than 1K in file size.)

IE, Opera, Firefox, Chrome, Safari and MOST modern web browsers download OCSP responses. It's just you don't see them as these happen predominately in the background. There are other programs that would use OCSP, but these are the main ones.

Quote
Personally I'm totally satisfied with any certificate status,
You're satisfied with a revoked or expired certificate?
Quote
so how can it be stopped?

Contact whomever created the program.
Logged
eden23
Newbie
*
Offline Offline

Posts: 17


« Reply #4 on: March 18, 2011, 01:45:24 PM »

Thank you Sal Amander for your quick response and the clearing up.
To be sure, I already submitted a support ticket to stardock. Havent received any reply, yet.
I posted here, anyway, because I hoped there would be some sort of system setting in Windows..
You asked:
You're satisfied with a revoked or expired certificate?
In the case of a working software that's not supposed to access the internet at any time the answer is definitely: yes.
That's probably what I don't understand about the whole thing here. What if the certificate were revoked or expired? I'd still be using the software. Seems like this is more something concerning the developer, and not me, the user.
« Last Edit: March 18, 2011, 01:50:19 PM by eden23 » Logged
Sal Amander
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 607



WWW
« Reply #5 on: March 18, 2011, 02:37:45 PM »

Thank you Sal Amander for your quick response and the clearing up.
To be sure, I already submitted a support ticket to stardock. Havent received any reply, yet.
I posted here, anyway, because I hoped there would be some sort of system setting in Windows..
You asked:
You're satisfied with a revoked or expired certificate?
In the case of a working software that's not supposed to access the internet at any time the answer is definitely: yes.
That's probably what I don't understand about the whole thing here. What if the certificate were revoked or expired? I'd still be using the software. Seems like this is more something concerning the developer, and not me, the user.


Does Stardock hold any passwords or other sensitive data (credit card data, user/password, etc.) that might be transmitted across the Internet? If so that's why there is an SSL certificate in place and thus OCSP being used.
Logged
eden23
Newbie
*
Offline Offline

Posts: 17


« Reply #6 on: March 19, 2011, 02:41:18 AM »

Generally they probably do hold some kind of sensitive data, but definitely not in conjunction with this software, which is just supposed to sit on my desktop and do its work locally.
I'm waiting for reply from their support now...
Logged
Tags: ocsp  response  download  file  stardock 
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.041 seconds with 20 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com