Revoking Certificates
The following situations can be designated as reasons for revoking the certificate: key leakage, CA leakage, change of subordination, replacement, termination of business, and certificate holding (this is the only reason code that allows you to change the status of the revoked certificate, which is very useful when there is a problem with the certificate status).
The revocation of a certificate by the CA means that the CA revokes its related declaration allowing the use of the key pair before the certificate normally expires. After the revoked certificate expires, the related entries in the CRL are deleted to reduce the size of the CRL list.