Hi Til,

1.
I have a pki which a chain of 3 certs. Is there a way, when a user downloads his
Cert, that he gets the complete chain? Are the clients recognizing that there is a
Chain delivered?

For Mozilla and related you can simply stuff together the PEM Encoded certs in one large file - Mozilla imports them but sometimes messes up the Trust-Roles of it :(
For IE you must create a special binary container - I didnt manage that with Openssl but was able to export the chain from a Windows machine after importing the full chain by hand.
The MS Clients recognize the chain correctly

2.
About the translation issue. The more i use the lang files, the more i dont like them.
If i am wrong, correct me ;) you are using the english translations as a key for the
Other languages. Thats in my eyes very �hm stupid ;) whenever i change the english 
text,
All translation gets broken. Why are you not using keywords as key?
Maybe move the translation into the database and make a good structure. I could submit 
db structures
And functions for translation stuff i am using.

That is standard behaviour of the gettext system - the idea behind is, that you receive a proper english text if no translation is found.

3.
I mail about about a problem at the config import on the online interface.
When i go the way node -> admin -> server init -> import config it works
When i got the way node -> admin -> dataexchange -> download all data from higher 
level it dont works.
Why not? That are the same commands or?

OpenCA Version ? I think there where some bugs related to this in the last RCs...

Oliver
--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to