I have to add:

Looking into the crl of the _sub-ca_:
Certificate Revocation List (CRL):
        Version 1 (0x0)
        Signature Algorithm: md5WithRSAEncryption
        Issuer: /C=DE/O=Xtelligent/OU=Trustcenter/O=Xtelligent Root 
CA/OU=TCOperating/CN=Operator Xtelligent Root CA/[EMAIL PROTECTED]
> ...
I have expected to find "O=Xtelligent IT Consulting GmbH CA", not "O=Xtelligen Root CA"... But this is the origin of the original problem. Now the problem is: why does the CRL talk about root-ca(-Operator) as issuer?


FyI - the sub-ca cert:
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 3 (0x3)
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: [EMAIL PROTECTED],CN=Operator Xtelligent Root 
CA,OU=TCOperating,O=Xtelligent Root CA,OU=Trustcenter,O=Xtelligent,C=DE
        Validity
            Not Before: Nov 11 16:22:54 2003 GMT
            Not After : Nov  8 16:22:54 2013 GMT
        Subject: serialNumber=3,CN=Operator Xtelligent IT Consulting GmbH 
CA,OU=TCOperating,O=Xtelligent IT Consulting GmbH CA,OU=Trustcenter,O=Xtelligent,C=DE
> ...

Is there somebody out there, who can explain this odd behavior?

Regards,
Gottfried




------------------------------------------------------- This SF. Net email is sponsored by: GoToMyPC GoToMyPC is the fast, easy and secure way to access your computer from any Web browser or wireless device. Click here to Try it Free! https://www.gotomypc.com/tr/OSDN/AW/Q4_2003/t/g22lp?Target=mm/g22lp.tmpl _______________________________________________ OpenCA-Devel mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-devel

Reply via email to