Hi Ppl,
First of all - it looks like OpenCA will come to fame at the TU Muenchen.
My project for automated certifiacate generation within a user community system moves from the Institute Server to the uniersity wide system at the end of the year - so we have a (theoretical) number of 35k users ;)
Second this brings me to a problem...
I want to do issue Webserver Certificates too and look for a way to do so with minimal manuall interaction.
So, I think a reasonable way could be, that an admin creates a CSR through the Frontend and finally signs it with his user cert. Doing so I can skip any additional "auth check" on the person. As my User Certs come from a HR system I can croscheck if the signer is responsilbe for the request Server/Domain....
Anyone here how already thout about this ?
Second cool thing would be a mail interface to receive CSRs by eMail and put it into the CA system......
Oliver -- Diese Nachricht wurde digital unterschrieben oliwel's public key: http://www.oliwel.de/oliwel.crt Basiszertifikat: http://www.ldv.ei.tum.de/page72
smime.p7s
Description: S/MIME Cryptographic Signature