FAN HuaXiang wrote:
>             Error 560
>                   General Error Signature Object not returned, check the
> openca-verify command. Cannot build PKCS#7-object from extracted signature!
>                   OpenCA::PKCS7 returns errorcode 7911031 (OpenCA::PKCS7->new:
> Cannot initialize signature (7912021). OpenCA::PKCS7->initSignature: Cannot
> parse signature (7921021). OpenCA::PKCS7->getParsed: The crypto-backend cannot
> verify the signature (7742075). OpenCA::OpenSSL->verify: openca-sv failed.
> [Error]: error:04077068:rsa routines:RSA_verify:bad signature
>                   [Info]: Input file intialized.
>                   [Info]: Signaturefile initialized.
>                   [Info]: Reading Certificate file.
>                   [Info]: PKCS#7 object loaded.
>                   [Info]: Data is ready for verification.
>                   [Info]: Signature Informations (PKCS#7):
>                   depth:0 serial:0D subject:CN=raoperator,OU=IHEP,O=HEP,C=CN
>                   error:20:unable to get local issuer certificate
>                   [Info]: Signature is corrupt. Errorcode -1.
>                   signature:error:-1
>                   ).

This mean that you are missing a CA certificate in your CA chain. Did
you rebuild your CA chain after the import? Usually the CA certificate
is missing in the chain or you forgot the rebuild operation.

Michael
-- 
_______________________________________________________________

Michael Bell                    Humboldt-Universitaet zu Berlin

Tel.: +49 (0)30-2093 2482       ZE Computer- und Medienservice
Fax:  +49 (0)30-2093 2704       Unter den Linden 6
[EMAIL PROTECTED]   D-10099 Berlin
_______________________________________________________________

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to