Dne pá 26. duben 2002 09:07 jste napsal(a):
> Josef Vesely schrieb:
> > Hi everyone,
> >
> > 1. If I finished first step of CA initialization and exported
> > configuration I tried to import it to RA, but it looks like import freeze
> > at "Importing CA-Certificates into ldap ... "
>
> Did you have a LDAP-server? Check apache's error.log.

I'm using "OpenLDAP: slapd 2.0.23-Release", apache's error log isn't  changed.
The strange is, there is no activity at the ldap port.

> if you have the CA and the RA on the same machine with the same
> configuration then the use the same DB and the initialization of the RA
> destroys the CAs database. I add the problem to the documentation.

If CA and RA share one db, is needed to export/import configuration, certificates, 
CRLs, ...?
Is the documentation somewhere available for download?


My LDAP configuration is ok, if I add to LDAP using LDAP links, it is ok.
The certificate is transported, but I got message "cetrificate <num> error".
Certificate is present in LDAP without the binaries.
(I reported this few days ago in "SNAP-20020423" thread with ldap debug output)

I visited my server using LDAP Browse\Editor v2.8.1 and after adding certificate there 
is
new entry
OU=Internet   (with attributes)
        certificateRevaocationList;binary               BINARY (0b)
        authorityRevocationList;binary          BINARY (0b)
        ou                                      Internet
        objectClass                             top
        objectClass                             organizationUnit
        objectClass                             certificationAuthority
        caCertificate;binary                    BINARY (0b)


-- 
 ===================================
 Josef "jose" Vesely
 mail: [EMAIL PROTECTED], ICQ: 27347332
 Faculty of Informatics, Masaryk university
 Brno, Czech Republic
===================================

_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to