GOTOU Yuuzou wrote:
1. We successed in signing the root-CA's self-signed certificate. But it cannot be be exported. We tried to export "CA-Certs" in "Input and Output" menu, and we got blank screen and any errors log.
Sounds like a bug. I will verify it. When do you download the pre-RC7?
2. We created CSR in sub-CA. We can export it to be signed* Go to a computer from which you can reach the public interface of the root-CA.
by another CA. But we aren't understanding how to import
and sign it in root-CA.
* Extract the PEM-request from the floppy (use tar).
* Go to the public interface with your browser. There you can request a certificate.
* Use the form to request a server-certificate. The name was choosen because the most people who has a PKCS#10-request creates this request for a server.
* Simply upload the request and use Sub-CA as role.
* Now you can handle this request like any other request.
Please check the extensionconfiguration Sub-CA.ext in OPENCADIR/etc/openssl/extfiles to be correct.
Michael
--
-------------------------------------------------------------------
Michael Bell Email (private): [EMAIL PROTECTED]
Rechenzentrum - Datacenter Email: [EMAIL PROTECTED]
Humboldt-University of Berlin Tel.: +49 (0)30-2093 2482
Unter den Linden 6 Fax: +49 (0)30-2093 2959
10099 Berlin
Germany http://www.openca.org
-------------------------------------------------------
This sf.net email is sponsored by: See the NEW Palm Tungsten T handheld. Power & Color in a compact size!
http://ads.sourceforge.net/cgi-bin/redirect.pl?palm0001en
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users
