Lutz Jaenicke wrote:

> Hi!
>
> I am using OpenCA 0.9.1 (RC something). The first certificates created
> with OpenCA (an older version) are going to expire soon. How do I handle
> certificate renewal? If I supply a new request for the same key, OpenCA
> does not allow generation of a new certificate...

Work in the past has indicated that its not good practice to "re-use" a key
in a certificate renewal.

It is more appropriate to generate a new key pair, CRS and certificate.

Email me if you have questions on risk management and best practices for CA
and public key operations.

Best regards,

Bill



-------------------------------------------------------
This SF.NET email is sponsored by:
SourceForge Enterprise Edition + IBM + LinuxWorld = Something 2 See!
http://www.vasoftware.com
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to