Hi, Oliver, > First of all - it looks like OpenCA will come to fame at the TU Muenchen. > My project for automated certifiacate generation within a user community > system moves from the Institute Server to the uniersity wide system at > the end of the year - so we have a (theoretical) number of 35k users ;)
congrats! > I want to do issue Webserver Certificates too and look for a way to do > so with minimal manuall interaction. > So, I think a reasonable way could be, that an admin creates a CSR > through the Frontend and finally signs it with his user cert. Doing so I > can skip any additional "auth check" on the person. As my User Certs > come from a HR system I can croscheck if the signer is responsilbe for > the request Server/Domain.... > > Anyone here how already thout about this ? We are doing roughly the same. Server certs only, minimal manual interaction, after approval by RA officer the CA shall automatically issue the certs. I started writing the automation script for this, but due to other problems I postponed this. Martin ------------------------------------------------------- This SF.Net email is sponsored by BEA Weblogic Workshop FREE Java Enterprise J2EE developer tools! Get your free copy of BEA WebLogic Workshop 8.1 today. http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click _______________________________________________ OpenCA-Devel mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-devel