Hello List,

I've got a 'little' problem when 'Approve and sign' a certificate request in the RA.
The following error occurs when I do a "Approve and Sign Request" at the
"/Certificate Request //Waiting for approval" /page, and sign the request with my
RA operator certificate.


===========================================================
Request Approved

Description: Certificate Request Successfully approved.

*Signature: The PKCS#7-object signals an error. The signature is not valid.
PKCS#7-Error 7932021: OpenCA::PKCS7->parseDepth: The chain is not complete.
*===========================================================

As you can notice, the Certificate Request approval is done correct. I can't find out why this
error occurs, when i take a look at my RA opperator certificate in Netscape, it's verified correctly.


When I upload the RA requests to the CA (Upload data to a higher level of the hierarchy) and verify the
signatures of the "Approved Certification Requests" the signatures are valid !!


I've looked at the RA database and noticed that the "valid_cacertificates" isn't the same as the "valid_cacertificates"
of the CA. Am is missing something here ? How is are the signatures in the RA verified ? Is this done tru netscape or the
certificates in the RA database ?


I hop someone ca put some light on this situation.
/
/Thanx,

David


*Setup:* openca-0.9.1.1 mod_perl-2.0 perl 5.6.1 openssl-0.9.7 Debian 3.0 (2.4.18 kernel) Netscape 4.78 Apache 2.0.44 DB module







-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to