cURL Auth, TLS, and Proxy Security/Use a certificate revocation list

Check server certs against a CRL file.

Section: TLS and Certificates

Use a certificate revocation list

bash
bash
curl --crlfile revoked.pem https://example.com
Explanation

Relevant in stricter PKI environments.

Learn the surrounding workflow

Compare similar commands or jump into common fixes when this command is part of a bigger troubleshooting path.

Related commands

Same sheet · prioritizing TLS and Certificates
Require TLS 1.2
Require TLS 1.2 or newer for the connection.
OpenIn sheetbashsame section
Set maximum TLS version
Cap the TLS protocol version used by curl.
OpenIn sheetbashsame section
Use a CA certificate directory
Use a directory of CA certificates instead of a single bundle file.
OpenIn sheetbashsame section
Use a PKCS#12 client certificate
Authenticate with a P12 / PFX certificate bundle.
OpenIn sheetbashsame section
Pin a public key
Verify the server public key against a pinned key.
OpenIn sheetbashsame section
Request certificate status checks
Require certificate status validation via TLS stapling when supported.
OpenIn sheetbashsame section