pug wrote:

Content-Type: application/x-x509-ca-ra-cert
Apr 26 16:31:49.924: CRYPTO_PKI: status = 0: failed to select RA encrypt cert
Content type says there is a CA and a RA certificate, but there is a CA certificate only. Later that dump tells it cannot decrypt RA part, which is not enclosed (I think so...)
OpenCA is running with openssl 0.9.7c. Other functions of OpenCA are fully operable, certificates can be requested, approved and issued.
regards

thats exactly what i wrote ;o)


you should issue an extra (webserver) cert from the ca
this you have to assign to the scep-interface through config.xml
then run configure_etc.sh again

than the scep-interface should work - at least - have the right certs
for operating - since you usaly don't want to use the ca cert and key
directly for the scep-interface

greetings
dalini


-------------------------------------------------------
This SF.Net email is sponsored by: Oracle 10g
Get certified on the hottest thing ever to hit the market... Oracle 10g. Take an Oracle 10g class now, and we'll give you the exam FREE.
http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to