---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Verify certificate revocation \[New in Security Center 1.3\]

# Verify certificate revocation \[New in Security Center 1.3\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

The com.glide.communications.httpclient.verify_revoked_certificate property checks certificate revocation during the Transport Layer Security (TLS) handshake to ensure that security checks are not
bypassed.
If com.glide.communications.httpclient.verify_revoked_certificate is not set to the recommended value of true, then certificate revocation will not be checked during the TLS handshake.
TLS encrypts data sent over the Internet to ensure that bad actors are unable to see sensitive information such as passwords or credit card numbers. Bypassing the TLS handshake is a security risk because an attacker with a revoked
certificate can neglect to provide a valid certificate and break public key infrastructure (PKI) and digital certificate trust.

## More information {#sc-verify-certificate-revocation__section_qhx_1b1_xwb}

{#sc-verify-certificate-revocation__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Configuration name | com.glide.communications.httpclient.verify_revoked_certificate |
| Configuration type | System Properties (/sys_properties_list.do) |
| Data type | Boolean |
| Recommended value | true |
| Default value | true |
| Category | [Communications](https://servicenow-prod.fluidtopics.net/KYWXOfqNUW0uNGo3zippJA "This control ensures proper encryption using strong algorithms and ciphers. This includes ensuring the recommended version of TLS is used for client connectivity, use of strong cipher suites, use of trusted and signed certificates, ensuring connections are encrypted between components and logging of connection failures.") |
| Security risk | * Severity score: 6.5 * CVSS score: Medium * Security risk details: Not setting com.glide.communications.httpclient.verify_revoked_certificate to the recommended value of true will cause certificate revocation to not be checked during the TLS handshake. {#sc-verify-certificate-revocation__ul_g1g_3sf_xwb} |
| Dependencies and prerequisites | None |
| Functional impact | This property should be set to true to ensure that a Transport Layer Security (TLS) session is started with an authentic endpoint. If this property is set to false, then the certificate is not checked, which could compromise the security of the instance. |
[ ]

{#sc-verify-certificate-revocation__table_ajc_b43_3kb}

