"Victor Berdin" <[EMAIL PROTECTED]> wrote on 07/29/2003 12:38:45 AM:
> For your Bering <====> Win2K setup
> (btw, what VPN interop setup are you trtying to implement?)
If it were only that easy...
I'm connecting my Bering firewall to XYZ firewall, having only been given a
.p12 file...
> If you're still using the Bering script to generate the certificates,
I wish. I am not generating any keys. I only have the .p12 file.
> > Am I correct so far? And what should I do for a CRL?
>
> You should do nothing with it actually, unless you wish to revoke a
> valid
> certificate. To get get a more human-readable status on requests done
> to
> the CA, you can view the 'index.txt' file. This should show the 'V/R'
> flags
> that indicate whether the certs are still Valid or Revoked.
> You should really dig deeper into the howtos of OpenSSL to understand
> these files and their usage.
>
> > Sigh. I really wish I could generate a couple of RSA keys, share
> them
> > between the firewalls and call it a day... :(
> >
> > Tim Massey
>
> Unfortunately, you can't with Windows interop. But what you can do to
> make things much-much, very much simpler, is to use PSK instead
> (or for starters). Then once your setup is already working, go try
> using
> the certs once more.
Thank you very much for the suggestions. Unfortunately, there are two
things complicating this: 1) I only have control of my side, and 2) I am
not generating the keys.
Tim Massey
-------------------------------------------------------
This SF.Net email sponsored by: Free pre-built ASP.NET sites including
Data Reports, E-commerce, Portals, and Forums are available now.
Download today and enter to win an XBOX or Visual Studio .NET.
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html