Any idea on this ? I've investigated more on the batch system and read
a lot of email on the ML archive: batch system is not much useful for
me because needs to be initialized and started by "human" :-(

Instead on the ML archive I've found in the thread "[Openca-Users]
Single database for CA and RA (Automatic issuance)" some interesting
points: a series of scripts (openca_scripts.tar.gz) by Chris Covell
and something in "openca/bin/" by Michael. The problem is that I
cannot find "openca/bin/", can someone please direct me in the CVS ?
or can someone attach this files ?

> > Basically you can - but you have to write your own bacth function.
> > The question is - why do you wnat to use pkcs10...
> 
> because the process we want to obtain is something like this:
> 
>  1. On the CMS we make a GenKey on the Smartcard
>  2. On the CMS the Smartcard does a SignPKCS#10
>  3. The CMS sends the PKCS#10 to the CA
>  4. The CA, starting from the PKCS#10, generates the certificate by
> signing it using an HSM
>  5. The CA returns the certificate to the CMS (in PKCS#12 format) and
> pubblish the  certificate on LDAP
>  6. The CMS writes the certificate on the Smartcard

-- 
Diego de Felice


-------------------------------------------------------
This SF.Net email is sponsored by Yahoo.
Introducing Yahoo! Search Developer Network - Create apps using Yahoo!
Search APIs Find out how you can build Yahoo! directly into your own
Applications - visit http://developer.yahoo.net/?fr=offad-ysdn-ostg-q22005
_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to