Hi, Oliver,

> First of all - it looks like OpenCA will come to fame at the TU Muenchen.
> My project for automated certifiacate generation within a user community
> system moves from the Institute Server to the uniersity wide system at
> the end of the year - so we have a (theoretical) number of 35k users ;)

congrats!

> I want to do issue Webserver Certificates too and look for a way to do
> so with minimal manuall interaction.
> So, I think a reasonable way could be, that an admin creates a CSR
> through the Frontend and finally signs it with his user cert. Doing so I
> can skip any additional "auth check" on the person. As my User Certs
> come from a HR system I can croscheck if the signer is responsilbe for
> the request Server/Domain....
>
> Anyone here how already thout about this ?

We are doing roughly the same. Server certs only, minimal manual
interaction, after approval by RA officer the CA shall automatically
issue the certs.
I started writing the automation script for this, but due to other
problems I postponed this.

Martin



-------------------------------------------------------
This SF.Net email is sponsored by BEA Weblogic Workshop
FREE Java Enterprise J2EE developer tools!
Get your free copy of BEA WebLogic Workshop 8.1 today.
http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click
_______________________________________________
OpenCA-Devel mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-devel

Reply via email to