Hi Juan,

I'm using openca-0.9.2.1

You cant sign on the RA ! The batchsystem needs the
private key of the
CA and so is located on the CA.

so, how do I approve requests in RA using BatchSystem?

I think you talk about the "automatic issue", so the leftmost item in the batch menu ? You can't approve requests "en block", you just can issue certificates on manually approved requests with this.
If you need a way to create requests from a third pary datasource you should use the "real" batch system. This will create certificates from a plain text file with some data.....

I did it, in the CA, using node --> Administration

--> Dataexchange --> Enroll

data to a lower level of the hierarchy -->

Configuration

and in the RA, node --> Administration -->

Dataexchange --> Download data from a

higher level of the hierarchy --> Configuration

This should work normally, I guess you screwed something. Is the CA Certificate correctly installed in the CA ?


I'm using an HSM so the private key cannot be exported. So what should I do in that case?

You need the cert/public key - this is accessile outside the HSM, have you created a CA certificate ?

Oliver

--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to