Hello Mads,
Thanks for your answer.
I took a look to the web page of mod_authz_ldap but couldn't figure out how
it could help me, can you explain me a bit more your thoughs?
Regards,
Alec
________________________________________________________________________________________
>From Mads Toftum <[EMAIL PROTECTED]> on 11 December 2001 23:45:53
To : [EMAIL PROTECTED]
Subject : Re: Multiple CRLs with same CA
On Tue, Dec 11, 2001 at 05:32:42PM -0500, [EMAIL PROTECTED] wrote:
> Hello there,
>
> Is mod_ssl supporting having multiple CRLs for 1 CA?
> It seems it's not, and that's very anoying in my situation.
> I'm using Entrust PKI software which splits the CRL list when it reaches
> a defined size (for scalability). mod_ssl seems to check only the first
> CRL and don't care about the others, which means that users with
> revocated certificates can use them...
>
Hmmm - perhaps you could use mod_authz_ldap - AFAICT it should be a useable
solution in an Entrust setup.
vh
Mads Toftum
--
With a rubber duck, one's never alone.
-- "The Hitchhiker's Guide to the Galaxy"
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]
--------------------------------------------------------------------------------------------
Alec Barea
PKI engineering team
Equant
Tel: +1 514 847-3436
CVS: 225 3436
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]