Hello, we are also trying to use mod_ssl with a VeriSign GlobalID server certificate.

We were able to follow the instructions in README.GlobalID and get
step-up encryption with our own certificate authority.

Now, with the actual VeriSign certificate, we are seeing some
browsers accept the certificate and step-up correctly, whereas
others do not.

However, some of the browsers that do not recognize our certificate,
*will* accept the certificate from

        https://enigma.barclaycard.co.uk

Any suggestions as to what me might need to change/add?  I saw a
reference in the archive from Ralph Engelschall about

> "Or you can add the CA cert to the
> SSLCACertificatePath and let mod_ssl pick it up there while sending the server
> cert chain.

Could someone clarify whether this is just for the self-signed CA
certificate, or is it true for a VeriSign certificate also?  if
so, what CA cert is it that we should add?

Thanks,

- Anil

-- 
Anil A. Pal
Technical Yahoo!
mailto:[EMAIL PROTECTED]                       Tel: +1 (408) 530-5020
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

Reply via email to