On 8/31/06, Mike Wiseman <[EMAIL PROTECTED]> wrote:
>
>
> Hello,
>
> I'm looking for commentary/advice from OpenCA administrators, particularly
> those in the academic sector. I have spent the last few months working with
> OpenCA, with the goal of applying it to issue end-user certs used for
> application authentication. The work has gone quite well: offline CA, online
> RA with SCEP configured to do remote renewal of keypairs/certs on PKCS#11
> compatible SmartCards. In general, I think OpenCA is a great piece of work.

Well, I think I am on the same condition as you. I am trying to deploy
OpenCA on my campus. But, I haven't deployed OpenCA perfectly, it's
still on testing phase.

May I ask some question to you? I am still a little bit confuse, about
how to use certificate for application authentication. What I know is
that in the certificate there's public key. Then we use public key to
encrypt message and private key to decrypt the message.

I have succesfully created certificate and export it to LDAP server
using OpenCA. But then, how I use this certificate for application
authentication? In what application did you use certificate for
authentication? I am planning to use this certificate to proxy-server
authentication using squid. But I am still confused, how to do with
this certificate.

> Thanks for your time,
Ok, thank you for your attention.

> Mike
>
> Mike Wiseman
> Computing and Networking Services
> University of Toronto

Bandung Institute of Technology
Indonesia
-- 
Zaki Akhmad

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to