Michael Bell wrote:
> > Anyway we could plan the OCSPd to use:
> >
> > 1. LDAP
> > 2. OpenCA DBs
>
> There are two problems:
>
> 1. How do you want to store the status in the LDAP-server (it's not the
> standardserver where we publish the certs).
We could use the server where we publish certificates requiring the LDAP
manager to include an objectclass that will include the status: attribute,
and, why not, the possibility of having a pre-built ocsp response archivied
in ocsp-status: or ocsp-response: (but I would not reccomend it).
> 2. SQL requires several different DB-drivers so we have to find a way
> like perl's DBI.
We could use "Embedded SQL" to include query into C source code, it is quite
easy, indeed.
> I prefer the OpenCA DBs but I don't know how to support several
> different databases in C/C++ (except of using perl).
We can follow the OpenLDA example as it does support different DMBS, actually.
We could, at least, ask them if they can give us some good advices.
--
C'you,
Massimiliano Pala
--o-------------------------------------------------------------------------
Massimiliano Pala [OpenCA Project Manager] [EMAIL PROTECTED]
[EMAIL PROTECTED]
[EMAIL PROTECTED]
http://www.openca.org Tel.: +39 (0)59 270 094
http://openca.sourceforge.net Mobile: +39 (0)347 7222 365
S/MIME Cryptographic Signature