> > Michael Bell wrote:
> This is LDAP not OpenSSL! OpenSSL checks the index-file because OpenSSL
> enforces unique DNs.


In the manual entry for the "openssl ca" command, they refer to this
"enforcement"
as a BUG (at least it is referred to in the BUGS section) - so I guess if
they
fix it, it will be fixed in OpenCA too?

There are other ways to sign a certificate with openssl other than using
"ca" command,
but I guess then you'd have to find another way to generate the CRL  Is this
the
reason for staying with the "openssl ca" method?

Right now, is it true that if using the DBI interface, there are two
parallel databases kept - the
SQL one and the DBM one?

Thanks for the quick answers - If I should be asking these on another list,
please let
me know

Regards,
Donal


_______________________________________________
OpenCA-Devel mailing list
[EMAIL PROTECTED]
http://lists.sourceforge.net/lists/listinfo/openca-devel

Reply via email to