X509ArchiveCutoffExtension Class

Represents X.509 Archive Cutoff extension which is first defined in RFC2560.
Namespace:  System.Security.Cryptography.X509Certificates
Assembly:  PKI.Core (in PKI.Core.dll) Version: (
public class X509ArchiveCutoffExtension : X509Extension

Public methodX509ArchiveCutoffExtension
Initializes a new instance of the X509ArchiveCutoffExtension class.
Public methodX509ArchiveCutoffExtension(DateTime)
Initializes a new instance of the X509ArchiveCutoffExtension class using a cutoff date.
Public methodX509ArchiveCutoffExtension(AsnEncodedData, Boolean)
Initializes a new instance of the X509ArchiveCutoffExtension class using an AsnEncodedData object and a value that identifies whether the extension is critical.
Public propertyCutoffDate
Gets a cutoff date and time.
Public methodFormat
Returns a formatted version of the Abstract Syntax Notation One (ASN.1)-encoded data as a string.
Public Extension MethodEncode
Encodes current extension to ASN.1-encoded byte array.
An OCSP responder MAY choose to retain revocation information beyond a certificate's expiration. The date obtained by subtracting this retention interval value from the producedAt time in a response is defined as the certificate's "archive cutoff" date. OCSP-enabled applications would use an OCSP archive cutoff date to contribute to a proof that a digital signature was (or was not) reliable on the date it was produced even if the certificate needed to validate the signature has long since expired.

To illustrate, if a server is operated with a 7-year retention interval policy and status was produced at time t1 then the value for ArchiveCutoff in the response would be (t1 - 7 years).

