> All I understand is I probably need to have a new extension file called say 
>"OCSP_Validator.ext" (say a copy of Web_Server.ext), and add the following line just 
>below keyUsage line :
> extendedKeyUsage = OCSPSigning
>

as i know you have to create a new Role for this (CA-Management -> Configuration). 
This will create a new "Role".ext File wich you can modify for your needs, then export 
the new
configuration to the RA, create a new Request with this Role and sign the Cert in the 
CA.
(Michael, is it right ?)

Regards,
Robert


_______________________________________________________________

Sponsored by:
ThinkGeek at http://www.ThinkGeek.com/
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to