hi Barrow,

Barrow H Kwan wrote:
What happen if user need to install his/her certificate again? like on a different computer or might be his/her computer is broken and need to re-install everything ( OS, etc... ) that need to install the certificate again?

Pls take care - you mean Keypair - not certificate I guess - the certificate is public, so its no problem to obtaiin it several times....

For the keypair, it depends....

a) The keypair was generated by OpenCA (user chose ServerSide KeyGen when requesting)
Then you have a good chance to help the user if he remebers the inital PIN - the private key is stored in the database encrypted with this PIN

b) The User did a "browserbased" keygen - IE and Mozilla support exporting the key to a so called "pkcs12" file, this contains the keypair and certificates. You can move this file onto your second computer and use your keys there...

Oliver

--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to