Hi Ppl,

First of all - it looks like OpenCA will come to fame at the TU Muenchen.
My project for automated certifiacate generation within a user community system moves from the Institute Server to the uniersity wide system at the end of the year - so we have a (theoretical) number of 35k users ;)

Second this brings me to a problem...
I want to do issue Webserver Certificates too and look for a way to do so with minimal manuall interaction.
So, I think a reasonable way could be, that an admin creates a CSR through the Frontend and finally signs it with his user cert. Doing so I can skip any additional "auth check" on the person. As my User Certs come from a HR system I can croscheck if the signer is responsilbe for the request Server/Domain....

Anyone here how already thout about this ?

Second cool thing would be a mail interface to receive CSRs by eMail and put it into the CA system......

Oliver
--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to