OpenCA Makefiles don't work correctly. The documentation is wrong,  
and everybody who tries to get SCEP working hits this issue. Its been  
like this for months (years?).

You need to explicity configure, make and install the scep support.  
cd into src/scep (i think this is the place, its been ages since I  
used it) do a ./configure (make sure you pass any custom configure  
params e.g. --prefix), make, make install and SCEP should work fine.

-Pete

On Jun 21, 2006, at 8:07 AM, Greg Chambers wrote:

> Hi,
> I am running OpenCA 0.9.2.5 compiled with the enable-scep option.
> OpenSSL is version 0.9.8a; the problematic version 0.9.7d has never  
> been
> installed on the machine.  The SCEP interface is set up with a CA  
> signed
> cert and private key, which is not protected by a password.  The sscep
> client can contact the SCEP and successfully get the CA certificate  
> (and
> SCEP certificate), however when enroll attempts are made the result  
> is a
> pkistatus FAILURE message:
>
> ./sscep: finding attribute pkiStatus
> ./sscep: allocating 1 bytes for attribute
> ./sscep: pkistatus: FAILURE
> ./sscep: finding attribute failInfo
> ./sscep: allocating 1 bytes for attribute
> ./sscep: reason: Transaction not permitted or supported
>
>
> The same message appears using autosscep as well.  Any comments or
> suggestions are welcome.
>
> Thanks,
> Greg
>
>
> _______________________________________________
> Openca-Users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/openca-users



_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to