| Attribute | Must | Description |
|---|---|---|
| Authority-Revocation-List | X | Cross Certificate CRLs |
| CA-Certificate | X | Certificate for CA |
| Certificate-Chain-V3 | Not used! | |
| Certificate-Revocation-List | X | Exchange 4 client V1 CRL |
| Certificate-Revocation-List-V1 | Not Used! | |
| Certificate-Revocation-List-V3 | Not Used! | |
| Common-Name | X | X.500 Common Name (DN of this object class) |
| Compromised-Key-List | List of keys that have been compromised | |
| Cross-Certificate-CRL | Not Used! | |
| Cross-Certificate-Pair | V3 Cross Certificates | |
| Delta-Revocation-List | From 97 X509 | |
| Domain-Def-Alt-Recip | KM server mailbox (used by Osmium+ clients) | |
| DXA-Admin-Forward | Send token to user via E-Mail | |
| DXA-Prev-Types | Enable Compatibility | |
| Enable-Compatibility | Not Used! | |
| Expiration-Time | Client Renewal Date | |
| KCC-Status | Certificate Trust Lists | |
| KM-Server | KM server mailbox | |
| Search-Guide | X.509 V3 Certificate Chain | |
| Security-Policy | Security Policy for this CA | |
| Send-EMail-Message | Not Used! replaced by DXA-Admin-Forward that replicates between sites | |
| Supported-Application-Context | X.509 V3 CRL | |
| Teletex-Terminal-Identifier | Certification-Revocation-List-V1 |