Hello Max,

It seems as if the Open CA looks for the admin certificate's serial number in 
ist own database and not at the certificate itself. When we try to sign the 
request with a admin certificate where the serial number is not in the database 
we get the error message that the serial number could not be found in the 
database.

            Error 700
                  General Error Cannot find the certificate with the matching 
serial in the database!

Is this possible, and if yes, what are we doing wrong?

Th Problem is, that OpenCA tries to determine the Role of the signer and does this by searching the certificate in its own database. So it is not possible to sign with an OperatorCert across CAs.

Oliver
--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to