Hello Juan,

Actually we have the OpenCA environment mounted in one machine, and we tryed to migrate it to a configuration with two machines, one for CA and one for RA, but we have found some problems and OpenCA doesn't want to work in two separate machines.

What have you exactly done, what version are you using ?

1. We configured the RA machine with: "make install-online" but this didn't create the batch interface, required to our project to sign all received request with only a few mouse clicks.

You cant sign on the RA ! The batchsystem needs the private key of the CA and so is located on the CA.

2. After having configured the CA in my CA machine I tryed to export the configuration to the RA machine, after importing everything was good, but when I tryed to view a request made using the User Public Interface I'm getting this error message:

  Error 700

*General Error* The compilation of the command cmdViewCSR failed. Can't use an undefined value as a HASH reference at /usr/local/OpenCA/lib/functions/crypto-utils.lib line 1149.

I trying looking in the database to see if the configuration worked well but I can see there's nothing in the ca_certificate table



Questions:

1. What should I do to install batch interface within the normal steps of the configuration-installation?

see above - you cant

2. What should I do to export configuration (including ca_certificate) from CA to RA??
I did it, in the CA, using node --> Administration --> Dataexchange --> Enroll data to a lower level of the hierarchy --> Configuration
and in the RA, node --> Administration --> Dataexchange --> Download data from a higher level of the hierarchy --> Configuration

This should work normally, I guess you screwed something. Is the CA Certificate correctly installed in the CA ?

Oliver
--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to