Hi Til,
1. I have a pki which a chain of 3 certs. Is there a way, when a user downloads his Cert, that he gets the complete chain? Are the clients recognizing that there is a Chain delivered?
For Mozilla and related you can simply stuff together the PEM Encoded certs in one large file - Mozilla imports them but sometimes messes up the Trust-Roles of it :(
For IE you must create a special binary container - I didnt manage that with Openssl but was able to export the chain from a Windows machine after importing the full chain by hand.
The MS Clients recognize the chain correctly
2. About the translation issue. The more i use the lang files, the more i dont like them. If i am wrong, correct me ;) you are using the english translations as a key for the Other languages. Thats in my eyes very �hm stupid ;) whenever i change the english text, All translation gets broken. Why are you not using keywords as key? Maybe move the translation into the database and make a good structure. I could submit db structures And functions for translation stuff i am using.
That is standard behaviour of the gettext system - the idea behind is, that you receive a proper english text if no translation is found.
3. I mail about about a problem at the config import on the online interface. When i go the way node -> admin -> server init -> import config it works When i got the way node -> admin -> dataexchange -> download all data from higher level it dont works. Why not? That are the same commands or?
OpenCA Version ? I think there where some bugs related to this in the last RCs...
Oliver -- Diese Nachricht wurde digital unterschrieben oliwel's public key: http://www.oliwel.de/oliwel.crt Basiszertifikat: http://www.ldv.ei.tum.de/page72
smime.p7s
Description: S/MIME Cryptographic Signature
