On Thu, Mar 24, 2005 at 04:08:43PM +0100, Michael Bell wrote:
> Date: Thu, 24 Mar 2005 16:08:43 +0100
> From: Michael Bell <[EMAIL PROTECTED]>
> Subject: Re: [OpenCA-Devel] CA Certificate serial number.
> 
> Alexei Chetroi wrote:
 [snip]

> If you can fix it then we could build a patch for crypto-utils.lib. 
> Perhaps we should create some extreme testcases for the new 
> testenvironment in the CVS head.
> 
> The problem is in fact really huge because we have to change perhaps our 
> complete database code. PKIX requires 20 byte serial numbers. We only 
> support today 8 byte integers. Does somebody know how lexical ordering 
> on integers work? Does it sort correctly?

  I've tried to issue certificate for the RA admin. It fails with:
Error 6761
General Error Error while issuing Certificate to RA Administrator
(filename: /var/lib/openca/tmp/b6aeb51cd84562f3.req).
OpenCA::OpenSSL returns errocode 7731001
(OpenCA::OpenSSL->issueCert: Cannot create X500::DN-object.).

  Any ideas what is wrong?

  Best wishes

--
Alexei Chetroi

Smile... Tomorrow will be worse. (c) Murphy's Law


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
OpenCA-Devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-devel

Reply via email to