I have noticed this as well.  I had assumed this was the correct behaviour
because ocspd is CRL based.  The CRLs only list revoked certificates, they
don't tell you which certificates have been issued.

Bruce


On 11/6/07, Domaca Pastrva <[EMAIL PROTECTED]> wrote:
>
> Here's the thing,
>
> before sending any configuration files I'd like to post the problem
> description:
>
> The responder returns status:good for any serial number, even for those
> serial numbers that have never been issued. Only for serials that point on a
> revoked certificate the responder returns status:revoked.
>
> Everything else works fine, i.e. request that contain the certificate that
> is to be checked, return status:unkown|revoked|good - regarding the actual
> status of the certificate.
>
> Nice regards and thanks for the great work
> think I gone buy me some stuff from the openCA online store ;)
>
> Dino
>
> -------------------------------------------------------------------------
> This SF.net email is sponsored by: Splunk Inc.
> Still grepping through log files to find problems?  Stop.
> Now Search log events and configuration files using AJAX and a browser.
> Download your FREE copy of Splunk now >> http://get.splunk.com/
> _______________________________________________
> Openca-Users mailing list
> Openca-Users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/openca-users
>
>
-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to